Unknown CNA (c4f26cc8...)
First CVE: Oct 5, 2024Active for: 2 years
200
CVEs Published
More CVEs Published than 80% of tracked CNAs
66.7
Avg CVEs / Year
More Avg CVEs / Year than 86% of tracked CNAs
5.6
Avg CVSS Score
Higher Avg CVSS Score than 5% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Trends Over Time
The number and severity of CVEs published by Unknown CNA (c4f26cc8...) over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 5, 2024
21 months ago
Most Recent CVE
Jul 1, 2026
27 days ago
Top CVEs
All CVEs published by Unknown CNA (c4f26cc8...) as a CNA, regardless of affected vendor or product.
200 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-14363CRITICAL Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo Extension allows SQL Injection.
Th | Jul 1, 2026 | 9.8 | 40 | NO | NO |
CVE-2026-58025CRITICAL Deserialization of untrusted data vulnerability in Wikimedia Foundation MediaWiki.
This vulnerability is associated with program files includes/Import/WikiImporter.Php, includes/ | Jul 1, 2026 | 9.8 | 40 | NO | NO |
CVE-2026-58521CRITICAL Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo Extension allows SQL Injection.
Th | Jul 1, 2026 | 9.8 | 38 | NO | NO |
CVE-2024-47841HIGH Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Path Traversal.This issue | Oct 5, 2024 | 7.5 | 38 | NO | NO |
CVE-2026-8857HIGH A vulnerability in Wikimedia Foundation timeline.
This vulnerability is associated with program files scripts/EasyTimeline.Pl, includes/Timeline.Php.
This issue affects timeli | Jul 1, 2026 | 8.8 | 37 | NO | NO |
CVE-2026-13706HIGH Improper input validation vulnerability in Wikimedia Foundation UrlShortener.
This vulnerability is associated with program files includes/UrlShortenerUtils.Php. | Jul 1, 2026 | 8.8 | 35 | NO | NO |
CVE-2025-67484CRITICAL Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Api/ApiFormatXml.Php.
This issue affects MediaWiki: from * before 1.3 | Feb 3, 2026 | 9.8 | 35 | NO | NO |
CVE-2026-13707HIGH Session fixation vulnerability in Wikimedia Foundation OAuth.
This vulnerability is associated with program files src/Backend/MWOAuthServer.Php.
This issue affects OAuth: from | Jul 1, 2026 | 7.6 | 34 | NO | NO |
CVE-2026-58036HIGH Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki.
This vulnerability is associated with program files includes/Api/ApiQu | Jul 1, 2026 | 7.5 | 32 | NO | NO |
CVE-2025-12004CRITICAL Incorrect Permission Assignment for Critical Resource vulnerability in The Wikimedia Foundation Mediawiki - Lockdown Extension allows Privilege Abuse. Fixed in Mediawiki Core Actio | Oct 21, 2025 | 10.0 | 32 | NO | NO |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA200 CVEs
13%
66%
12%
Severity distribution among all CVEs353,173 CVEs
45%
40%
11%
LowMediumHighCriticalNone
Attack Vector
Local0 (0.0%)
Network200 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low183 (91.5%)
High17 (8.5%)
Unknown0 (0.0%)
User Interaction
None94 (47.0%)
Unknown0 (0.0%)
Required82 (41.0%)
Privileges Required
Low49 (24.5%)
High21 (10.5%)
None130 (65.0%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (200 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
An overview of all social media posts that mention a CVE ID published by Unknown CNA (c4f26cc8...) as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Unknown CNA (c4f26cc8...) as a CNA — matched by CVE ID, not by organization name.