ZeroHour

CVE-2020-29005

CVSS 3.1
7.5 high
EPSS
<1%p49
Published
()
Modified
Description

The API in the Push extension for MediaWiki through 1.35 used cleartext for ApiPush credentials, allowing for potential information disclosure.

Vendors
mediawiki
Products
mediawiki
Weakness
CWE-319, CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.