Tilesheets MediaWiki Extension is Vulnerable to Potential SQL Injection
Vulnerability Description
Tilesheets MediaWiki Extension adds a table lookup parser function for an item and returns the requested image. A missing backtick in a query executed by the Tilesheets extension allows users to insert and potentially execute malicious SQL code. This issue has not been fixed.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-54865
Credits & Attribution
No credits recorded in the NVD database.
Affected Vendor
FTB-Gamepedia
View all reports →