Exploit for CVE-2026-58025

PHP deserialization RCE in MediaWiki via WikiImporter log entry parameters.

Published 6 Sep 2026Updated 6 Sep 20263 sources
CVSS 9.8 PoC CANDIDATE

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.