CVE-2024-47913
PoC —CVSS 3.1
5.3 medium
EPSS
<1%p38
Published
()
Modified
Description
An issue was discovered in the AbuseFilter extension for MediaWiki before 1.39.9, 1.40.x and 1.41.x before 1.41.3, and 1.42.x before 1.42.2. An API caller can match a filter condition against AbuseFilter logs even if the caller is not authorized to view the log details for the filter.
- Vendors
- mediawiki
- Products
- mediawiki
- Weakness
- CWE-532
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.