PT-2025-4806 · Mediawiki · Mediawiki Globalblocking Extension

Dom Walden

+1

·

Publicado

2025-01-14

·

Atualizado

2025-10-16

·

CVE-2025-23073

CVSS v3.1

3.5

Baixa

VetorAV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions MediaWiki GlobalBlocking Extension (affected versions not specified)
Description The issue concerns an Exposure of Sensitive Information to an Unauthorized Actor, allowing the retrieval of embedded sensitive data. It briefly impacted the master branch of MediaWiki’s GlobalBlocking Extension.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Argument Injection

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-23073

Produtos afetados

Mediawiki Globalblocking Extension