Description
An issue was discovered in the AbuseFilter extension for MediaWiki through 1.35.2. The page_recent_contributors leaked the existence of certain deleted MediaWiki usernames, related to rev_deleted.
Remediation
References
Related Vulnerabilities
Liferay Portal Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-26273)
Atlassian Jira CVE-2012-2926 Vulnerability (CVE-2012-2926)
WordPress Plugin WP Data Access SQL Injection (4.3.1)
MySQL CVE-2016-5507 Vulnerability (CVE-2016-5507)
Multiple SugarCRM Products Remote Code Execution Vulnerability (CVE-2023-22952)