Looking for the vulnerability index of Invicti's legacy products?
MediaWiki CVE-2023-29137 Vulnerability (CVE-2023-29137) - Vulnerability Database

MediaWiki CVE-2023-29137 Vulnerability (CVE-2023-29137)

Description

An issue was discovered in the GrowthExperiments extension for MediaWiki through 1.39.3. The UserImpactHandler for GrowthExperiments inadvertently returns the timezone preference for arbitrary users, which can be used to de-anonymize users.

References

Related Vulnerabilities