MediaWiki Vulnerability - CVE-2019-12472
An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.18.0 through 1.32.1. It is possible to bypass the limits on IP range blocks (wgBlockCIDRLimit) by using the API. Fixed in 1.32.2 1.31.2 1.30.2 and 1.27.6.