Description
Wikimedia MediaWiki 1.23.0 through 1.32.1 has an information leak. Privileged API responses that include whether a recent change has been patrolled may be cached publicly. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.
Remediation
References
Related Vulnerabilities
MySQL CVE-2019-2533 Vulnerability (CVE-2019-2533)
LimeSurvey CVE-2019-16176 Vulnerability (CVE-2019-16176)
WordPress Plugin WP Human Resource Management Security Bypass (2.2.5)
WordPress 3.8.x Multiple Vulnerabilities (3.8 - 3.8.36)
WordPress Plugin Dean's FCKEditor with pwwang's code Arbitrary File Upload (1.0.0)