Total vulnerabilities in the database
An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.27.0 through 1.32.1. Directly POSTing to Special:ChangeEmail would allow for bypassing re-authentication, allowing for potential account takeover.
Software | From | Fixed in |
---|---|---|
mediawiki / mediawiki | 1.27.0 | 1.32.1.x |
debian / debian_linux | 9.0 | 9.0.x |