MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability - CVE-2021-46148 - Vulnerability Database

MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability - CVE-2021-46148

Medium
Reference: CVE-2021-46148
Title: MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Overview:

An issue was discovered in MediaWiki before 1.35.5 1.36.x before 1.36.3 and 1.37.x before 1.37.1. Some unprivileged users can view confidential information (e.g. IP addresses and User-Agent headers for election traffic) on a testwiki SecurePoll instance.