Description
A denial-of-service issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37.2. When many files exist, requesting Special:NewFiles with actor as a condition can result in a very long running query.
Remediation
References
Related Vulnerabilities
Sqlite NULL Pointer Dereference Vulnerability (CVE-2020-13435)
WordPress Plugin Subscribe2 Multiple Cross-Site Scripting Vulnerabilities (8.1)
WordPress Plugin Zedity:The Easiest Way To Create Posts & Pages Cross-Site Scripting (2.5.0)
Jboss EAP Uncontrolled Resource Consumption Vulnerability (CVE-2016-8627)
WordPress Plugin Resume Submissions & Job Postings Cross-Site Scripting (2.5.3)