PT-2021-23488 · Mediawiki+1 · Translate Extension+2

Published

2021-10-06

·

Updated

2024-03-06

·

CVE-2021-42049

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions MediaWiki versions through 1.36.2
Description An issue in the Translate extension allows oversighters to whitewash revisions by preventing them from undoing revisions or oversight on pages where they suppressed information, such as personally identifiable information (PII).
Recommendations For versions through 1.36.2, as a temporary workaround, consider restricting the use of the Translate extension until a patch is available.

Fix

Related Identifiers

ALT-PU-2021-3561
ALT-PU-2022-1199
BIT-MEDIAWIKI-2021-42049
CVE-2021-42049

Affected Products

Alt Linux
Mediawiki
Translate Extension