Описание
An issue was discovered in MediaWiki through 1.37.2. The SecurePoll extension allows a leak because sorting by timestamp is supported,
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat OpenShift Container Platform 3.11 | mediawiki | Out of support scope |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-212
https://bugzilla.redhat.com/show_bug.cgi?id=2080821mediawiki: SecurePoll extension allows a leak because sorting by timestamp is supported
5.5 Medium
CVSS3
Связанные уязвимости
CVSS3: 7.5
nvd
почти 4 года назад
An issue was discovered in MediaWiki through 1.37.2. The SecurePoll extension allows a leak because sorting by timestamp is supported,
CVSS3: 7.5
github
почти 4 года назад
An issue was discovered in MediaWiki through 1.37.2. The SecurePoll extension allows a leak because sorting by timestamp is supported,
5.5 Medium
CVSS3