<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – MediaWiki (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/mediawiki.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/mediawiki-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – MediaWiki (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:50 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-34092 – Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wiki...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34092</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34092</guid>
    <pubDate>Mon, 11 May 2026 16:17:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34092</strong></p>
  <p>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki.   This vulnerability is associated with program files includes/Skin/Skin.Php.    This issue affects MediaWiki: from * before 1.43.7, 1.44.4, 1.45.2.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34092">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34091 – Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wiki...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34091</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34091</guid>
    <pubDate>Mon, 11 May 2026 16:17:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34091</strong></p>
  <p>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki.  This issue affects MediaWiki: from * before 1.43.7, 1.44.4, 1.45.2.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34091">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34088 – Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wiki...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34088</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34088</guid>
    <pubDate>Mon, 11 May 2026 16:17:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34088</strong></p>
  <p>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki.  This issue affects MediaWiki: from * before 1.43.7, 1.44.4, 1.45.2.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34088">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39937 – Improper removal of sensitive information before storage or transfer vulnerabili...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39937</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39937</guid>
    <pubDate>Tue, 07 Apr 2026 22:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39937</strong></p>
  <p>Improper removal of sensitive information before storage or transfer vulnerability in The Wikimedia Foundation Mediawiki - CentralAuth Extension allows Resource Leak Exposure. The issue has been remediated on the `master` branch, and in the release branches for MediaWiki versions 1.43, 1.44, and 1.45.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-212</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39937">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-30917 – Bucket is a MediaWiki extension to store and retrieve structured data on article...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-30917</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-30917</guid>
    <pubDate>Tue, 10 Mar 2026 17:40:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-30917</strong></p>
  <p>Bucket is a MediaWiki extension to store and retrieve structured data on articles. Prior to 2.1.1, a stored XSS can be inserted into any Bucket table field that has a PAGE type, which will execute whenever a user views that table's corresponding Bucket namespace page. This vulnerability is fixed in 2.1.1.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-30917">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-67484 – Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associate...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-67484</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-67484</guid>
    <pubDate>Tue, 03 Feb 2026 02:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-67484</strong></p>
  <p>Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Api/ApiFormatXml.Php.  This issue affects MediaWiki: from * before 1.39.16, 1.43.6, 1.44.3, 1.45.1.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-67484">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-11175 – Improper Neutralization of Special Elements used in an Expression Language State...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-11175</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-11175</guid>
    <pubDate>Fri, 30 Jan 2026 20:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-11175</strong></p>
  <p>Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection') vulnerability in The Wikimedia Foundation Mediawiki - DiscussionTools Extension allows Regular Expression Exponential Blowup.This issue affects Mediawiki - DiscussionTools Extension: 1.44, 1.43.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-917</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-11175">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-0669 – Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0669</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0669</guid>
    <pubDate>Wed, 07 Jan 2026 18:15:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-0669</strong></p>
  <p>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Wikimedia Foundation MediaWiki - CSS extension allows Path Traversal.This issue affects MediaWiki - CSS extension: 1.44, 1.43, 1.39.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0669">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-12004 – Incorrect Permission Assignment for Critical Resource vulnerability in The Wikim...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-12004</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-12004</guid>
    <pubDate>Tue, 21 Oct 2025 07:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-12004</strong></p>
  <p>Incorrect Permission Assignment for Critical Resource vulnerability in The Wikimedia Foundation Mediawiki - Lockdown Extension allows Privilege Abuse. Fixed in Mediawiki Core Action APIThis issue affects Mediawiki - Lockdown Extension: from master before 1.42.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-12004">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62658 – Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62658</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62658</guid>
    <pubDate>Mon, 20 Oct 2025 21:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62658</strong></p>
  <p>Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation MediaWiki WatchAnalytics extension allows SQL Injection.This issue affects MediaWiki WatchAnalytics extension: 1.43, 1.44.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62658">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62697 – Improper Neutralization of Special Elements in Output Used by a Downstream Compo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62697</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62697</guid>
    <pubDate>Mon, 20 Oct 2025 20:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62697</strong></p>
  <p>Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in The Wikimedia Foundation Mediawiki - LanguageSelector Extension allows Code Injection.This issue affects Mediawiki - LanguageSelector Extension: from master before 1.39.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62697">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59839 – The EmbedVideo Extension is a MediaWiki extension which adds a parser function c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59839</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59839</guid>
    <pubDate>Thu, 25 Sep 2025 14:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59839</strong></p>
  <p>The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for embedding video clips from various video sharing services. In versions 4.0.0 and prior, the EmbedVideo extension allows adding arbitrary attributes to an HTML element, allowing for stored XSS through wikitext. This issue has been patched via commit 4e075d3.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59839">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59332 – 3DAlloy is a lightWeight 3D-viewer for MediaWiki. From 1.0 through 1.8, the &lt;3d&gt;...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59332</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59332</guid>
    <pubDate>Mon, 15 Sep 2025 20:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59332</strong></p>
  <p>3DAlloy is a lightWeight 3D-viewer for MediaWiki. From 1.0 through 1.8, the <3d> parser tag and the {{#3d}} parser function allow users to provide custom attributes that are then appended to the canvas HTML element that is being output by the extension. The attributes are not sanitized, which means that arbitrary JavaScript can be inserted and executed.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59332">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54865 – Tilesheets MediaWiki Extension adds a table lookup parser function for an item a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54865</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54865</guid>
    <pubDate>Tue, 05 Aug 2025 01:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54865</strong></p>
  <p>Tilesheets MediaWiki Extension adds a table lookup parser function for an item and returns the requested image. A missing backtick in a query executed by the Tilesheets extension allows users to insert and potentially execute malicious SQL code. This issue has not been fixed.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54865">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53625 – The DynamicPageList3 extension is a reporting tool for MediaWiki, listing catego...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53625</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53625</guid>
    <pubDate>Thu, 10 Jul 2025 19:15:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53625</strong></p>
  <p>The DynamicPageList3 extension is a reporting tool for MediaWiki, listing category members and intersections with various formats and details. Several #dpl parameters can leak usernames that have been hidden using revision deletion, suppression, or the hideuser block flag. The vulnerability is fixed in 3.6.4.</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-359</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53625">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-53371 – DiscordNotifications is an extension for MediaWiki that sends notifications of a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53371</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53371</guid>
    <pubDate>Thu, 10 Jul 2025 18:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-53371</strong></p>
  <p>DiscordNotifications is an extension for MediaWiki that sends notifications of actions in your Wiki to a Discord channel. DiscordNotifications allows sending requests via curl and file_get_contents to arbitrary URLs set via $wgDiscordIncomingWebhookUrl and $wgDiscordAdditionalIncomingWebhookUrls. This allows for DOS by causing the server to read large files. SSRF is also possible if there are int…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53371">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-53499 – Missing Authorization vulnerability in Wikimedia Foundation Mediawiki - AbuseFil...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53499</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53499</guid>
    <pubDate>Mon, 07 Jul 2025 19:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-53499</strong></p>
  <p>Missing Authorization vulnerability in Wikimedia Foundation Mediawiki - AbuseFilter Extension allows Unauthorized Access.This issue affects Mediawiki - AbuseFilter Extension: from 1.43.X before 1.43.2.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53499">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-53495 – Missing Authorization vulnerability in Wikimedia Foundation Mediawiki - AbuseFil...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53495</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53495</guid>
    <pubDate>Mon, 07 Jul 2025 19:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-53495</strong></p>
  <p>Missing Authorization vulnerability in Wikimedia Foundation Mediawiki - AbuseFilter Extension allows Unauthorized Access.This issue affects Mediawiki - AbuseFilter Extension: from 1.43.X before 1.43.2.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53495">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53485 – SetTranslationHandler.php does not validate that the user is an election admin, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53485</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53485</guid>
    <pubDate>Fri, 04 Jul 2025 18:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53485</strong></p>
  <p>SetTranslationHandler.php does not validate that the user is an election admin, allowing any (even unauthenticated) user to change election-related translation text. While partially broken in newer MediaWiki versions, the check is still missing.     This issue affects Mediawiki - SecurePoll extension: from 1.39.X before 1.39.13, from 1.42.X before 1.42.7, from 1.43.X before 1.43.2.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53485">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-53484 – User-controlled inputs are improperly escaped in:




  *  
VotePage.php (poll o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53484</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53484</guid>
    <pubDate>Fri, 04 Jul 2025 18:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-53484</strong></p>
  <p>User-controlled inputs are improperly escaped in:       *   VotePage.php (poll option input)      *   ResultPage::getPagesTab() and getErrorsTab() (user-controllable page names)             This allows attackers to inject JavaScript and compromise user sessions under certain conditions.     This issue affects Mediawiki - SecurePoll extension: from 1.39.X before 1.39.13, from 1.42.X before 1.42.7,…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53484">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53483 – ArchivePage.php, UnarchivePage.php, and VoterEligibilityPage#executeClear() do n...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53483</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53483</guid>
    <pubDate>Fri, 04 Jul 2025 18:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53483</strong></p>
  <p>ArchivePage.php, UnarchivePage.php, and VoterEligibilityPage#executeClear() do not validate request methods or CSRF tokens, allowing attackers to trigger sensitive actions if an admin visits a malicious site.     This issue affects Mediawiki - SecurePoll extension: from 1.39.X before 1.39.13, from 1.42.X before 1.42.7, from 1.43.X before 1.43.2.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53483">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53481 – Uncontrolled Resource Consumption vulnerability in Wikimedia Foundation Mediawik...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53481</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53481</guid>
    <pubDate>Fri, 04 Jul 2025 16:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53481</strong></p>
  <p>Uncontrolled Resource Consumption vulnerability in Wikimedia Foundation Mediawiki - IPInfo Extension allows Excessive Allocation.This issue affects Mediawiki - IPInfo Extension: from 1.39.X before 1.39.13, from 1.42.X before 1.42.7, from 1.43.X before 1.43.2.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53481">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53370 – Citizen is a MediaWiki skin that makes extensions part of the cohesive experienc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53370</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53370</guid>
    <pubDate>Thu, 03 Jul 2025 20:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53370</strong></p>
  <p>Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. From versions 1.9.4 to before 3.4.0, short descriptions set via the ShortDescription extension are inserted as raw HTML by the Citizen skin, allowing any user to insert arbitrary HTML into the DOM by editing a page. This issue has been patched in version 3.4.0.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53370">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53369 – Short Description is a MediaWiki extension that provides local short description...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53369</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53369</guid>
    <pubDate>Thu, 03 Jul 2025 20:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53369</strong></p>
  <p>Short Description is a MediaWiki extension that provides local short description support. In version 4.0.0, short descriptions are not properly sanitized before being inserted as HTML using mw.util.addSubtitle, allowing any user to insert arbitrary HTML into the DOM by editing a page. This issue has been patched in version 4.0.1.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53369">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53368 – Citizen is a MediaWiki skin that makes extensions part of the cohesive experienc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53368</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53368</guid>
    <pubDate>Thu, 03 Jul 2025 20:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53368</strong></p>
  <p>Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. From versions 1.9.4 to before 3.4.0, page descriptions are inserted into raw HTML without proper sanitization by the Citizen skin when using the old search bar. Any user with page editing privileges can insert cross-site scripting (XSS) payloads into the DOM for other users who are searching for specific pages. Thi…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53368">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-6926 – Improper Authentication vulnerability in Wikimedia Foundation Mediawiki - Centra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-6926</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-6926</guid>
    <pubDate>Thu, 03 Jul 2025 17:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-6926</strong></p>
  <p>Improper Authentication vulnerability in Wikimedia Foundation Mediawiki - CentralAuth Extension allows : Bypass Authentication.This issue affects Mediawiki - CentralAuth Extension: from 1.39.X before 1.39.13, from 1.42.X before 1.42.7, from 1.43.X before 1.43.2.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-6926">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53501 – Improper Access Control vulnerability in Wikimedia Foundation Mediawiki - Scribu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53501</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53501</guid>
    <pubDate>Thu, 03 Jul 2025 17:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53501</strong></p>
  <p>Improper Access Control vulnerability in Wikimedia Foundation Mediawiki - Scribunto Extension allows : Accessing Functionality Not Properly Constrained by Authorization.This issue affects Mediawiki - Scribunto Extension: from 1.39.X before 1.39.12, from 1.42.X before 1.42.7, from 1.43.X before 1.43.2.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53501">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53093 – TabberNeue is a MediaWiki extension that allows the wiki to create tabs. Startin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53093</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53093</guid>
    <pubDate>Fri, 27 Jun 2025 18:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53093</strong></p>
  <p>TabberNeue is a MediaWiki extension that allows the wiki to create tabs. Starting in version 3.0.0 and prior to version 3.1.1, any user can insert arbitrary HTMLinto the DOM by inserting a payload into any allowed attribute of the `<tabber>` tag. Version 3.1.1 contains a patch for the bug.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53093">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-32956 – ManageWiki is a MediaWiki extension allowing users to manage wikis. Versions bef...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-32956</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-32956</guid>
    <pubDate>Mon, 21 Apr 2025 21:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-32956</strong></p>
  <p>ManageWiki is a MediaWiki extension allowing users to manage wikis. Versions before commit f504ed8, are vulnerable to SQL injection when renaming a namespace in Special:ManageWiki/namespaces when using a page prefix (namespace name, which is the current namespace you are renaming) with an injection payload. This issue has been patched in commit f504ed8. A workaround for this vulnerability involve…</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-32956">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21612 – TabberNeue is a MediaWiki extension that allows the wiki to create tabs. Prior t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21612</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21612</guid>
    <pubDate>Mon, 06 Jan 2025 16:15:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21612</strong></p>
  <p>TabberNeue is a MediaWiki extension that allows the wiki to create tabs. Prior to 2.7.2, TabberTransclude.php doesn't escape the user-supplied page name when outputting, so an XSS payload as the page name can be used here. This vulnerability is fixed in 2.7.2.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21612">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-47841 – Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-47841</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-47841</guid>
    <pubDate>Sat, 05 Oct 2024 02:15:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-47841</strong></p>
  <p>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Path Traversal.This issue affects Mediawiki - CSS Extension: from 1.42.X before 1.42.2, from 1.41.X before 1.41.3, from 1.39.X before 1.39.9.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-47841">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-47849 – Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-47849</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-47849</guid>
    <pubDate>Sat, 05 Oct 2024 01:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-47849</strong></p>
  <p>Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows SQL Injection.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-47849">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-47846 – Cross-Site Request Forgery (CSRF) vulnerability in The Wikimedia Foundation Medi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-47846</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-47846</guid>
    <pubDate>Sat, 05 Oct 2024 01:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-47846</strong></p>
  <p>Cross-Site Request Forgery (CSRF) vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows Cross Site Request Forgery.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-47846">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-47845 – Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundatio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-47845</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-47845</guid>
    <pubDate>Sat, 05 Oct 2024 01:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-47845</strong></p>
  <p>Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-116</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-47845">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-40597 – An issue was discovered in the CheckUser extension for MediaWiki through 1.42.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-40597</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-40597</guid>
    <pubDate>Sun, 07 Jul 2024 00:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-40597</strong></p>
  <p>An issue was discovered in the CheckUser extension for MediaWiki through 1.42.1. It can expose suppressed information for log events. (The log_deleted attribute is not respected.)</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-40597">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-34507 – An issue was discovered in includes/CommentFormatter/CommentParser.php in MediaW...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34507</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34507</guid>
    <pubDate>Sun, 05 May 2024 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-34507</strong></p>
  <p>An issue was discovered in includes/CommentFormatter/CommentParser.php in MediaWiki before 1.39.7, 1.40.x before 1.40.3, and 1.41.x before 1.41.1. XSS can occur because of mishandling of the 0x1b character, as demonstrated by Special:RecentChanges#%1b0000000.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-80</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34507">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-34506 – An issue was discovered in includes/specials/SpecialMovePage.php in MediaWiki be...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34506</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34506</guid>
    <pubDate>Sun, 05 May 2024 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-34506</strong></p>
  <p>An issue was discovered in includes/specials/SpecialMovePage.php in MediaWiki before 1.39.7, 1.40.x before 1.40.3, and 1.41.x before 1.41.1. If a user with the necessary rights to move the page opens Special:MovePage for a page with tens of thousands of subpages, then the page will exceed the maximum request time, leading to a denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34506">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-34502 – An issue was discovered in WikibaseLexeme in MediaWiki before 1.39.6, 1.40.x bef...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34502</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34502</guid>
    <pubDate>Sun, 05 May 2024 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-34502</strong></p>
  <p>An issue was discovered in WikibaseLexeme in MediaWiki before 1.39.6, 1.40.x before 1.40.2, and 1.41.x before 1.41.1. Loading Special:MergeLexemes will (attempt to) make an edit that merges the from-id to the to-id, even if the request was not a POST request, and even if it does not contain an edit token.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34502">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-29134 – An issue was discovered in the Cargo extension for MediaWiki through 1.39.3. The...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-29134</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-29134</guid>
    <pubDate>Wed, 27 Mar 2024 06:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-29134</strong></p>
  <p>An issue was discovered in the Cargo extension for MediaWiki through 1.39.3. There is mishandling of backticks to smartSplit.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-29134">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-45371 – An issue was discovered in the Wikibase extension for MediaWiki before 1.35.12, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-45371</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-45371</guid>
    <pubDate>Mon, 09 Oct 2023 06:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-45371</strong></p>
  <p>An issue was discovered in the Wikibase extension for MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1. There is no rate limit for merging items.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-45371">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-45363 – An issue was discovered in ApiPageSet.php in MediaWiki before 1.35.12, 1.36.x th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-45363</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-45363</guid>
    <pubDate>Mon, 09 Oct 2023 05:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-45363</strong></p>
  <p>An issue was discovered in ApiPageSet.php in MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1. It allows attackers to cause a denial of service (unbounded loop and RequestTimeoutException) when querying pages redirected to other variants with redirects and converttitles set.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-45363">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-3550 – Mediawiki v1.40.0 does not validate namespaces used in XML files.

Therefore, if...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-3550</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-3550</guid>
    <pubDate>Mon, 25 Sep 2023 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-3550</strong></p>
  <p>Mediawiki v1.40.0 does not validate namespaces used in XML files.  Therefore, if the instance administrator allows XML file uploads,  a remote attacker with a low-privileged user account can use this  exploit to become an administrator by sending a malicious link to  the instance administrator.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-3550">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-35333 – MediaWiki PandocUpload Extension Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-35333</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-35333</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-35333</strong></p>
  <p>MediaWiki PandocUpload Extension Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-35333">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-37303 – An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-37303</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-37303</guid>
    <pubDate>Fri, 30 Jun 2023 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-37303</strong></p>
  <p>An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. In certain situations, an attempt to block a user fails after a temporary browser hang and a DBQueryDisconnectedError error message.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-754</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-37303">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-29007 – The Score extension through 0.3.0 for MediaWiki has a remote code execution vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-29007</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-29007</guid>
    <pubDate>Sat, 15 Apr 2023 22:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-29007</strong></p>
  <p>The Score extension through 0.3.0 for MediaWiki has a remote code execution vulnerability due to improper sandboxing of the GNU LilyPond executable. This allows any user with an ability to edit articles (potentially including unauthenticated anonymous users) to execute arbitrary Scheme or shell code by using crafted {{Image data to generate musical scores containing malicious code.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-29007">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-29141 – An issue was discovered in MediaWiki before 1.35.10, 1.36.x through 1.38.x befor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-29141</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-29141</guid>
    <pubDate>Fri, 31 Mar 2023 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-29141</strong></p>
  <p>An issue was discovered in MediaWiki before 1.35.10, 1.36.x through 1.38.x before 1.38.6, and 1.39.x before 1.39.3. An auto-block can occur for an untrusted X-Forwarded-For header.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-29141">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-24612 – The PdfBook extension through 2.0.5 before b07b6a64 for MediaWiki allows command...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24612</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24612</guid>
    <pubDate>Mon, 30 Jan 2023 03:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-24612</strong></p>
  <p>The PdfBook extension through 2.0.5 before b07b6a64 for MediaWiki allows command injection via an option.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24612">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-28204 – A denial-of-service issue was discovered in MediaWiki 1.37.x before 1.37.2. Rend...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28204</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28204</guid>
    <pubDate>Mon, 19 Sep 2022 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-28204</strong></p>
  <p>A denial-of-service issue was discovered in MediaWiki 1.37.x before 1.37.2. Rendering of w/index.php?title=Special%3AWhatLinksHere&target=Property%3AP31&namespace=1&invert=1 can take more than thirty seconds. There is a DDoS risk.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28204">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-28203 – A denial-of-service issue was discovered in MediaWiki before 1.35.6, 1.36.x befo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28203</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28203</guid>
    <pubDate>Mon, 19 Sep 2022 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-28203</strong></p>
  <p>A denial-of-service issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37.2. When many files exist, requesting Special:NewFiles with actor as a condition can result in a very long running query.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-763</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28203">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-34750 – An issue was discovered in MediaWiki through 1.38.1. The lemma length of a Wikib...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-34750</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-34750</guid>
    <pubDate>Tue, 28 Jun 2022 13:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-34750</strong></p>
  <p>An issue was discovered in MediaWiki through 1.38.1. The lemma length of a Wikibase lexeme is currently capped at a thousand characters. Unfortunately, this length is not validated, allowing much larger lexemes to be created, which introduces various denial-of-service attack vectors within the Wikibase and WikibaseLexeme extensions. This is related to Special:NewLexeme and Special:NewProperty.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-34750">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-28323 – An issue was discovered in MediaWiki through 1.37.2. The SecurePoll extension al...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28323</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28323</guid>
    <pubDate>Sat, 30 Apr 2022 16:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-28323</strong></p>
  <p>An issue was discovered in MediaWiki through 1.37.2. The SecurePoll extension allows a leak because sorting by timestamp is supported,</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28323">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-29906 – The admin API module in the QuizGame extension for MediaWiki through 1.37.2 (bef...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-29906</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-29906</guid>
    <pubDate>Fri, 29 Apr 2022 04:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-29906</strong></p>
  <p>The admin API module in the QuizGame extension for MediaWiki through 1.37.2 (before 665e33a68f6fa1167df99c0aa18ed0157cdf9f66) omits a check for the quizadmin user.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-29906">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-29904 – The SemanticDrilldown extension for MediaWiki through 1.37.2 (before e688bdba643...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-29904</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-29904</guid>
    <pubDate>Fri, 29 Apr 2022 04:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-29904</strong></p>
  <p>The SemanticDrilldown extension for MediaWiki through 1.37.2 (before e688bdba6434591b5dff689a45e4d53459954773) allows SQL injection with certain '-' and '_' constraints.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-29904">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-29547 – The CreateRedirect extension before 2022-04-14 for MediaWiki does not properly c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-29547</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-29547</guid>
    <pubDate>Thu, 21 Apr 2022 01:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-29547</strong></p>
  <p>The CreateRedirect extension before 2022-04-14 for MediaWiki does not properly check whether the user has permissions to edit the target page. This could lead to an unauthorised (or blocked) user being able to edit a page.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-29547">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-28209 – An issue was discovered in Mediawiki through 1.37.1. The check for the override-...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28209</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28209</guid>
    <pubDate>Wed, 30 Mar 2022 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-28209</strong></p>
  <p>An issue was discovered in Mediawiki through 1.37.1. The check for the override-antispoof permission in the AntiSpoof extension is incorrect.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28209">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-28206 – An issue was discovered in MediaWiki through 1.37.1. ImportPlanValidator.php in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28206</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28206</guid>
    <pubDate>Wed, 30 Mar 2022 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-28206</strong></p>
  <p>An issue was discovered in MediaWiki through 1.37.1. ImportPlanValidator.php in the FileImporter extension mishandles the check for edit rights.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28206">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-28205 – An issue was discovered in MediaWiki through 1.37.1. The CentralAuth extension m...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28205</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28205</guid>
    <pubDate>Wed, 30 Mar 2022 07:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-28205</strong></p>
  <p>An issue was discovered in MediaWiki through 1.37.1. The CentralAuth extension mishandles a ttl issue for groups expiring in the future.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28205">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-0371 – MediaWiki before 1.23.16, 1.24.x through 1.27.x before 1.27.2, and 1.28.x before...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-0371</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-0371</guid>
    <pubDate>Fri, 18 Feb 2022 23:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-0371</strong></p>
  <p>MediaWiki before 1.23.16, 1.24.x through 1.27.x before 1.27.2, and 1.28.x before 1.28.1 allows remote attackers to discover the IP addresses of Wiki visitors via a style="background-image: attr(title url);" attack within a DIV element that has an attacker-controlled URL in the title attribute.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-0371">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-46149 – An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-46149</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-46149</guid>
    <pubDate>Mon, 10 Jan 2022 14:11:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-46149</strong></p>
  <p>An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. A denial of service (resource consumption) can be accomplished by searching for a very long key in a Language Name Search.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-46149">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-46147 – An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-46147</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-46147</guid>
    <pubDate>Mon, 10 Jan 2022 14:11:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-46147</strong></p>
  <p>An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. MassEditRegex allows CSRF.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-46147">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-44858 – An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-44858</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-44858</guid>
    <pubDate>Mon, 20 Dec 2021 09:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-44858</strong></p>
  <p>An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. It is possible to use action=edit&undo= followed by action=mcrundo and action=mcrrestore to view private pages on a private wiki that has at least one page set in $wgWhitelistRead.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-44858">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-41801 – The ReplaceText extension through 1.41 for MediaWiki has Incorrect Access Contro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41801</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41801</guid>
    <pubDate>Mon, 11 Oct 2021 08:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-41801</strong></p>
  <p>The ReplaceText extension through 1.41 for MediaWiki has Incorrect Access Control. When a user is blocked after submitting a replace job, the job is still run, even if it may be run at a later time (due to the job queue backlog)</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41801">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-41799 – MediaWiki before 1.36.2 allows a denial of service (resource consumption because...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41799</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41799</guid>
    <pubDate>Mon, 11 Oct 2021 08:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-41799</strong></p>
  <p>MediaWiki before 1.36.2 allows a denial of service (resource consumption because of lengthy query processing time). ApiQueryBacklinks (action=query&list=backlinks) can cause a full table scan.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41799">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-42040 – An issue was discovered in MediaWiki through 1.36.2. A parser function related t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-42040</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-42040</guid>
    <pubDate>Wed, 06 Oct 2021 21:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-42040</strong></p>
  <p>An issue was discovered in MediaWiki through 1.36.2. A parser function related to loop control allowed for an infinite loop (and php-fpm hang) within the Loops extension because egLoopsCountLimit is mishandled. This could lead to memory exhaustion.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-42040">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-31556 – An issue was discovered in the Oauth extension for MediaWiki through 1.35.2. MWO...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-31556</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-31556</guid>
    <pubDate>Thu, 12 Aug 2021 22:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-31556</strong></p>
  <p>An issue was discovered in the Oauth extension for MediaWiki through 1.35.2. MWOAuthConsumerSubmitControl.php does not ensure that the length of an RSA key will fit in a MySQL blob.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-1284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-31556">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-37558 – A SQL injection vulnerability in a MediaWiki script in Centreon before 20.04.14,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-37558</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-37558</guid>
    <pubDate>Tue, 03 Aug 2021 16:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-37558</strong></p>
  <p>A SQL injection vulnerability in a MediaWiki script in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote unauthenticated attackers to execute arbitrary SQL commands via the host_name and service_description parameters. The vulnerability can be exploited only when a valid Knowledge Base URL is configured on the Knowledge Base configuration page and points to a MediaWiki instance. This r…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-37558">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-36132 – An issue was discovered in the FileImporter extension in MediaWiki through 1.36...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36132</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36132</guid>
    <pubDate>Fri, 02 Jul 2021 13:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-36132</strong></p>
  <p>An issue was discovered in the FileImporter extension in MediaWiki through 1.36. For certain relaxed configurations of the $wgFileImporterRequiredRight variable, it might not validate all appropriate user rights, thus allowing a user with insufficient rights to perform operations (specifically file uploads) that they should not be allowed to perform.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36132">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-36128 – An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36128</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36128</guid>
    <pubDate>Fri, 02 Jul 2021 13:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-36128</strong></p>
  <p>An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. Autoblocks for CentralAuth-issued suppression blocks are not properly implemented.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-755</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36128">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-36126 – An issue was discovered in the AbuseFilter extension in MediaWiki through 1.36. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36126</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36126</guid>
    <pubDate>Fri, 02 Jul 2021 13:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-36126</strong></p>
  <p>An issue was discovered in the AbuseFilter extension in MediaWiki through 1.36. If the MediaWiki:Abusefilter-blocker message is invalid within the content language, the filter user falls back to the English version, but that English version could also be invalid on a wiki. This would result in a fatal error, and potentially fail to block or restrict a potentially nefarious user.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36126">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-36125 – An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36125</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36125</guid>
    <pubDate>Fri, 02 Jul 2021 13:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-36125</strong></p>
  <p>An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. The Special:GlobalRenameRequest page is vulnerable to infinite loops and denial of service attacks when a user's current username is beyond an arbitrary maximum configuration value (MaxNameChars).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36125">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-35197 – In MediaWiki before 1.31.15, 1.32.x through 1.35.x before 1.35.3, and 1.36.x bef...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-35197</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-35197</guid>
    <pubDate>Fri, 02 Jul 2021 13:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-35197</strong></p>
  <p>In MediaWiki before 1.31.15, 1.32.x through 1.35.x before 1.35.3, and 1.36.x before 1.36.1, bots have certain unintended API access. When a bot account has a "sitewide block" applied, it is able to still "purge" pages through the MediaWiki Action API (which a "sitewide block" should have prevented).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-35197">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-29483 – ManageWiki is an extension to the MediaWiki project. The 'wikiconfig' API leaked...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-29483</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-29483</guid>
    <pubDate>Wed, 28 Apr 2021 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-29483</strong></p>
  <p>ManageWiki is an extension to the MediaWiki project. The 'wikiconfig' API leaked the value of private configuration variables set through the ManageWiki variable to all users. This has been patched by https://github.com/miraheze/ManageWiki/compare/99f3b2c8af18...befb83c66f5b.patch. If you are unable to patch set `$wgAPIListModules['wikiconfig'] = 'ApiQueryDisabled';` or remove private config as a…</p>
  <p><strong>CVSS:</strong> 9.4 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-29483">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-31555 – An issue was discovered in the Oauth extension for MediaWiki through 1.35.2. It ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-31555</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-31555</guid>
    <pubDate>Thu, 22 Apr 2021 03:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-31555</strong></p>
  <p>An issue was discovered in the Oauth extension for MediaWiki through 1.35.2. It did not validate the oarc_version (aka oauth_registered_consumer.oarc_version) parameter's length.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-31555">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-29005 – The API in the Push extension for MediaWiki through 1.35 used cleartext for ApiP...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-29005</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-29005</guid>
    <pubDate>Fri, 29 Jan 2021 07:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-29005</strong></p>
  <p>The API in the Push extension for MediaWiki through 1.35 used cleartext for ApiPush credentials, allowing for potential information disclosure.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-29005">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-29004 – The API in the Push extension for MediaWiki through 1.35 did not require an edit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-29004</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-29004</guid>
    <pubDate>Fri, 29 Jan 2021 07:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-29004</strong></p>
  <p>The API in the Push extension for MediaWiki through 1.35 did not require an edit token in ApiPushBase.php and therefore facilitated a CSRF attack.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-29004">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-35626 – An issue was discovered in the PushToWatch extension for MediaWiki through 1.35...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35626</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35626</guid>
    <pubDate>Mon, 21 Dec 2020 23:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-35626</strong></p>
  <p>An issue was discovered in the PushToWatch extension for MediaWiki through 1.35.1. The primary form did not implement an anti-CSRF token and therefore was completely vulnerable to CSRF attacks against onSkinAddFooterLinks in PushToWatch.php.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35626">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-35625 – An issue was discovered in the Widgets extension for MediaWiki through 1.35.1. A...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35625</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35625</guid>
    <pubDate>Mon, 21 Dec 2020 23:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-35625</strong></p>
  <p>An issue was discovered in the Widgets extension for MediaWiki through 1.35.1. Any user with the ability to edit pages within the Widgets namespace could call any static function within any class (defined within PHP or MediaWiki) via a crafted HTML comment, related to a Smarty template. For example, a person in the Widget Editors group could use \MediaWiki\Shell\Shell::command within a comment.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35625">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-35623 – An issue was discovered in the CasAuth extension for MediaWiki through 1.35.1. D...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35623</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35623</guid>
    <pubDate>Mon, 21 Dec 2020 23:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-35623</strong></p>
  <p>An issue was discovered in the CasAuth extension for MediaWiki through 1.35.1. Due to improper username validation, it allowed user impersonation with trivial manipulations of certain characters within a given username. An ordinary user may be able to login as a "bureaucrat user" who has a similar username, as demonstrated by usernames that differ only in (1) bidirectional override symbols or (2)…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35623">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-35475 – In MediaWiki before 1.35.1, the messages userrights-expiry-current and userright...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35475</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35475</guid>
    <pubDate>Fri, 18 Dec 2020 08:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-35475</strong></p>
  <p>In MediaWiki before 1.35.1, the messages userrights-expiry-current and userrights-expiry-none can contain raw HTML. XSS can happen when a user visits Special:UserRights but does not have rights to change all userrights, and the table on the left side has unchangeable groups in it. (The right column with the changeable groups is not affected and is escaped correctly.)</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35475">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-26121 – An issue was discovered in the FileImporter extension for MediaWiki before 1.34...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-26121</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-26121</guid>
    <pubDate>Sun, 27 Sep 2020 21:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-26121</strong></p>
  <p>An issue was discovered in the FileImporter extension for MediaWiki before 1.34.4. An attacker can import a file even when the target page is protected against "page creation" and the attacker should not be able to create it. This occurs because of a mishandled distinction between an upload restriction and a create restriction. An attacker cannot leverage this to overwrite anything, but can lever…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-26121">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25869 – An information leak was discovered in MediaWiki before 1.31.10 and 1.32.x throug...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25869</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25869</guid>
    <pubDate>Sun, 27 Sep 2020 21:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25869</strong></p>
  <p>An information leak was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. Handling of actor ID does not necessarily use the correct database or correct wiki.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25869">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25827 – An issue was discovered in the OATHAuth extension in MediaWiki before 1.31.10 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25827</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25827</guid>
    <pubDate>Sun, 27 Sep 2020 21:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25827</strong></p>
  <p>An issue was discovered in the OATHAuth extension in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. For Wikis using OATHAuth on a farm/cluster (such as via CentralAuth), rate limiting of OATH tokens is only done on a single site level. Thus, multiple requests can be made across many wikis/sites concurrently.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25827">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-15179 – The ScratchSig extension for MediaWiki before version 1.0.1 allows stored Cross-...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-15179</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-15179</guid>
    <pubDate>Tue, 15 Sep 2020 18:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-15179</strong></p>
  <p>The ScratchSig extension for MediaWiki before version 1.0.1 allows stored Cross-Site Scripting. Using <script> tag inside <scratchsig> tag, attackers with edit permission can execute scripts on visitors' browser. With MediaWiki JavaScript API, this can potentially lead to privilege escalation and/or account takeover. This has been patched in release 1.0.1. This has already been deployed to all Sc…</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-15179">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-15164 – in Scratch Login (MediaWiki extension) before version 1.1, any account can be lo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-15164</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-15164</guid>
    <pubDate>Fri, 28 Aug 2020 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-15164</strong></p>
  <p>in Scratch Login (MediaWiki extension) before version 1.1, any account can be logged into by using the same username with leading, trailing, or repeated underscore(s), since those are treated as whitespace and trimmed by MediaWiki. This affects all users on any wiki using this extension. Since version 1.1, comments by users whose usernames would be trimmed on MediaWiki are ignored when searching…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-15164">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-12051 – The CentralAuth extension through REL1_34 for MediaWiki allows remote attackers ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-12051</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-12051</guid>
    <pubDate>Tue, 21 Apr 2020 22:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-12051</strong></p>
  <p>The CentralAuth extension through REL1_34 for MediaWiki allows remote attackers to obtain sensitive hidden account information via an api.php?action=query&meta=globaluserinfo&guiuser= request. In other words, the information can be retrieved via the action API even though access would be denied when simply visiting wiki/Special:CentralAuth in a web browser.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-12051">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-16528 – An issue was discovered in the AbuseFilter extension for MediaWiki. includes/spe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-16528</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-16528</guid>
    <pubDate>Fri, 20 Mar 2020 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-16528</strong></p>
  <p>An issue was discovered in the AbuseFilter extension for MediaWiki. includes/special/SpecialAbuseLog.php allows attackers to obtain sensitive information, such as deleted/suppressed usernames and summaries, from AbuseLog revision data. This affects REL1_32 and REL1_33.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-16528">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1709 – A vulnerability was found in all openshift/mediawiki 4.x.x versions prior to 4.3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1709</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1709</guid>
    <pubDate>Fri, 20 Mar 2020 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1709</strong></p>
  <p>A vulnerability was found in all openshift/mediawiki 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the openshift/mediawiki. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1709">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19345 – A vulnerability was found in all openshift/mediawiki-apb 4.x.x versions prior to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19345</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19345</guid>
    <pubDate>Fri, 20 Mar 2020 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19345</strong></p>
  <p>A vulnerability was found in all openshift/mediawiki-apb 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mediawiki-apb. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19345">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-10534 – In the GlobalBlocking extension before 2020-03-10 for MediaWiki through 1.34.0, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10534</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10534</guid>
    <pubDate>Thu, 12 Mar 2020 23:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-10534</strong></p>
  <p>In the GlobalBlocking extension before 2020-03-10 for MediaWiki through 1.34.0, an issue related to IP range evaluation resulted in blocked users re-gaining escalated privileges. This is related to the case in which an IP address is contained in two ranges, one of which is locally disabled.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10534">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-4381 – MediaWiki before 1.18.5, and 1.19.x before 1.19.2 saves passwords in the local d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-4381</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-4381</guid>
    <pubDate>Sat, 08 Feb 2020 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-4381</strong></p>
  <p>MediaWiki before 1.18.5, and 1.19.x before 1.19.2 saves passwords in the local database, (1) which could make it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack or, (2) when an authentication plugin returns a false in the strict function, could allow remote attackers to use old passwords for non-existing accounts in an external authentication system v…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-798</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-4381">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-4572 – The CentralNotice extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-4572</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-4572</guid>
    <pubDate>Thu, 06 Feb 2020 15:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-4572</strong></p>
  <p>The CentralNotice extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 sets the Cache-Control header to cache session cookies when a user is autocreated, which allows remote attackers to authenticate as the created user.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-384</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-4572">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-1817 – MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.ph...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-1817</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-1817</guid>
    <pubDate>Wed, 20 Nov 2019 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-1817</strong></p>
  <p>MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive information.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-1817">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-1816 – MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to caus...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-1816</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-1816</guid>
    <pubDate>Wed, 20 Nov 2019 20:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-1816</strong></p>
  <p>MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially crafted request.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-1816">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-0046 – mediawiki allows deleted text to be exposed</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-0046</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-0046</guid>
    <pubDate>Tue, 29 Oct 2019 19:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-0046</strong></p>
  <p>mediawiki allows deleted text to be exposed</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-0046">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-15150 – In the OAuth2 Client extension before 0.4 for MediaWiki, a CSRF vulnerability ex...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-15150</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-15150</guid>
    <pubDate>Mon, 19 Aug 2019 04:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-15150</strong></p>
  <p>In the OAuth2 Client extension before 0.4 for MediaWiki, a CSRF vulnerability exists due to the OAuth2 state parameter not being checked in the callback function.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-15150">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-12474 – Wikimedia MediaWiki 1.23.0 through 1.32.1 has an information leak. Privileged AP...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-12474</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-12474</guid>
    <pubDate>Wed, 10 Jul 2019 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-12474</strong></p>
  <p>Wikimedia MediaWiki 1.23.0 through 1.32.1 has an information leak. Privileged API responses that include whether a recent change has been patrolled may be cached publicly. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-12474">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-12473 – Wikimedia MediaWiki 1.27.0 through 1.32.1 might allow DoS. Passing invalid title...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-12473</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-12473</guid>
    <pubDate>Wed, 10 Jul 2019 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-12473</strong></p>
  <p>Wikimedia MediaWiki 1.27.0 through 1.32.1 might allow DoS. Passing invalid titles to the API could cause a DoS by querying the entire watchlist table. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-12473">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-12472 – An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.18...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-12472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-12472</guid>
    <pubDate>Wed, 10 Jul 2019 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-12472</strong></p>
  <p>An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.18.0 through 1.32.1. It is possible to bypass the limits on IP range blocks ($wgBlockCIDRLimit) by using the API. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-12472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-12466 – Wikimedia MediaWiki through 1.32.1 allows CSRF.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-12466</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-12466</guid>
    <pubDate>Wed, 10 Jul 2019 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-12466</strong></p>
  <p>Wikimedia MediaWiki through 1.32.1 allows CSRF.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-12466">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-12468 – An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.27...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-12468</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-12468</guid>
    <pubDate>Wed, 10 Jul 2019 15:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-12468</strong></p>
  <p>An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.27.0 through 1.32.1. Directly POSTing to Special:ChangeEmail would allow for bypassing re-authentication, allowing for potential account takeover.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-12468">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
