PT-2025-42564 · Mediawiki+1 · Mediawiki+1

Published

2025-01-01

·

Updated

2026-02-03

·

CVE-2025-61646

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions mediawiki (affected versions not specified)
Description The software potentially leaks hidden usernames in Watchlist and RecentChanges features. This could allow unauthorized access to user information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2025-61646
DLA-4355-1
DSA-6085-1
MGASA-2025-0260

Affected Products

Debian
Mediawiki