Mediawiki · Socialprofile Extension · CVE-2025-23074
**Name of the Vulnerable Software and Affected Versions**
Mediawiki - SocialProfile Extension versions 1.39.X through 1.39.11
Mediawiki - SocialProfile Extension versions 1.41.X through 1.41.3
Mediawiki - SocialProfile Extension versions 1.42.X through 1.42.2
**Description**
The issue allows exposure of sensitive information to an unauthorized actor, enabling functionality misuse.
**Recommendations**
For versions 1.39.X through 1.39.11, update to a version after 1.39.11.
For versions 1.41.X through 1.41.3, update to a version after 1.41.3.
For versions 1.42.X through 1.42.2, update to a version after 1.42.2.