5.3
CVSSv3

CVE-2022-39193

Published: 20/01/2023 Updated: 08/08/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in the CheckUser extension for MediaWiki up to and including 1.39.x. Various components of this extension can expose information on the performer of edits and logged actions. This information should not allow public viewing: it is supposed to be viewable only by users with suppression rights.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mediawiki mediawiki 1.39.0

mediawiki mediawiki 1.39.1

Vendor Advisories

DescriptionThe MITRE CVE dictionary describes this issue as: An issue was discovered in the CheckUser extension for MediaWiki through 139x Various components of this extension can expose information on the performer of edits and logged actions This information should not allow public viewing: it is supposed to be viewable only by users with che ...