CVE-2023-37300
PoC —CVSS 3.1
5.3 medium
EPSS
<1%p50
Published
()
Modified
Description
An issue was discovered in the CheckUserLog API in the CheckUser extension for MediaWiki through 1.39.3. There is incorrect access control for visibility of hidden users.
- Vendors
- mediawiki
- Products
- mediawiki
- Weakness
- CWE-863
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.