CVE-2021-30156

Related Vulnerabilities: CVE-2021-30156  

An issue was discovered in MediaWiki before 1.31.12 and 1.32.x through 1.35.x before 1.35.2. Special:Contributions can leak that a "hidden" user exists.

Description

The MITRE CVE dictionary describes this issue as:

An issue was discovered in MediaWiki before 1.31.12 and 1.32.x through 1.35.x before 1.35.2. Special:Contributions can leak that a "hidden" user exists.

Additional Information

  • Bugzilla 1948643: CVE-2021-30156 mediawiki: Special:Contributions toolbar reveals existence of hidden users
  • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
  • FAQ: Frequently asked questions about CVE-2021-30156