Total vulnerabilities in the database
MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to obtain information about deleted page via the (1) log API, (2) enhanced RecentChanges, and (3) user watchlists.
Software | From | Fixed in |
---|---|---|
mediawiki / mediawiki | 1.22.0 | 1.22.0.x |
mediawiki / mediawiki | 1.19 | 1.19.x |
mediawiki / mediawiki | 1.19-beta_1 | 1.19-beta_1.x |
mediawiki / mediawiki | 1.19.8 | 1.19.8.x |
mediawiki / mediawiki | 1.19.3 | 1.19.3.x |
mediawiki / mediawiki | 1.19.1 | 1.19.1.x |
mediawiki / mediawiki | 1.19.6 | 1.19.6.x |
mediawiki / mediawiki | - | 1.19.9.x |
mediawiki / mediawiki | 1.19-beta_2 | 1.19-beta_2.x |
mediawiki / mediawiki | 1.19.5 | 1.19.5.x |
mediawiki / mediawiki | 1.19.0 | 1.19.0.x |
mediawiki / mediawiki | 1.19.4 | 1.19.4.x |
mediawiki / mediawiki | 1.19.7 | 1.19.7.x |
mediawiki / mediawiki | 1.19.2 | 1.19.2.x |
mediawiki / mediawiki | 1.21.1 | 1.21.1.x |
mediawiki / mediawiki | 1.21.2 | 1.21.2.x |
mediawiki / mediawiki | 1.21 | 1.21.x |
mediawiki / mediawiki | 1.21.3 | 1.21.3.x |