Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-28323

Опубликовано: 30 апр. 2022
Источник: redhat
CVSS3: 5.5

Описание

An issue was discovered in MediaWiki through 1.37.2. The SecurePoll extension allows a leak because sorting by timestamp is supported,

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenShift Container Platform 3.11mediawikiOut of support scope

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-212
https://bugzilla.redhat.com/show_bug.cgi?id=2080821mediawiki: SecurePoll extension allows a leak because sorting by timestamp is supported

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
почти 4 года назад

An issue was discovered in MediaWiki through 1.37.2. The SecurePoll extension allows a leak because sorting by timestamp is supported,

CVSS3: 7.5
github
почти 4 года назад

An issue was discovered in MediaWiki through 1.37.2. The SecurePoll extension allows a leak because sorting by timestamp is supported,

5.5 Medium

CVSS3