Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-47913

Oct. 7, 2024, 5:48 p.m.

Product(s) Impacted

MediaWiki

  • 1.1.0 - 1.39.9
  • 1.40.0 - 1.40.8
  • 1.41.0 - 1.41.2
  • 1.42.0 - 1.42.1

Description

An issue was discovered in the AbuseFilter extension for MediaWiki before 1.39.9, 1.40.x and 1.41.x before 1.41.3, and 1.42.x before 1.42.2. An API caller can match a filter condition against AbuseFilter logs even if the caller is not authorized to view the log details for the filter.

Weaknesses

Date

Published: Oct. 4, 2024, 10:15 p.m.

Last Modified: Oct. 7, 2024, 5:48 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cve@mitre.org

References