PT-2025-4806 · Mediawiki · Mediawiki Globalblocking Extension

Dom Walden

+1

·

Published

2025-01-14

·

Updated

2025-10-16

·

CVE-2025-23073

CVSS v3.1

3.5

Low

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions MediaWiki GlobalBlocking Extension (affected versions not specified)
Description The issue concerns an Exposure of Sensitive Information to an Unauthorized Actor, allowing the retrieval of embedded sensitive data. It briefly impacted the master branch of MediaWiki’s GlobalBlocking Extension.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Argument Injection

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2025-23073

Affected Products

Mediawiki Globalblocking Extension