CVE-2021-31547

An issue was discovered in the AbuseFilter extension for MediaWiki through 1.35.2. Its AbuseFilterCheckMatch API reveals suppressed edits and usernames to unprivileged users through the iteration of crafted AbuseFilter rules.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mediawiki:mediawiki:*:*:*:*:*:*:*:*

History

12 Jul 2022, 17:42

Type Values Removed Values Added
CWE CWE-668 CWE-200

22 Apr 2021, 20:24

Type Values Removed Values Added
New CVE

Information

Published : 2021-04-22 03:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-31547

Mitre link : CVE-2021-31547

CVE.ORG link : CVE-2021-31547


JSON object : View

Products Affected

mediawiki

  • mediawiki
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor