MediaWiki Exposure of Resource to Wrong Sphere Vulnerability - CVE-2022-39193 - Vulnerability Database

MediaWiki Exposure of Resource to Wrong Sphere Vulnerability - CVE-2022-39193

Medium
Reference: CVE-2022-39193
Title: MediaWiki Exposure of Resource to Wrong Sphere Vulnerability
Overview:

An issue was discovered in the CheckUser extension for MediaWiki through 1.39.x. Various components of this extension can expose information on the performer of edits and logged actions. This information should not allow public viewing: it is supposed to be viewable only by users with checkuser access.