Description
An issue was discovered in MediaWiki before 1.35.8, 1.36.x and 1.37.x before 1.37.5, and 1.38.x before 1.38.3. When changes made by an IP address are reassigned to a user (using reassignEdits.php), the changes will still be attributed to the IP address on Special:Contributions when doing a range lookup.
Remediation
References
Related Vulnerabilities
PHP HTTP POST incorrect MIME header parsing vulnerability
MySQL CVE-2022-21265 Vulnerability (CVE-2022-21265)
Moodle Server-Side Request Forgery (SSRF) Vulnerability (CVE-2018-1042)
WordPress Plugin Catch Under Construction Security Bypass (1.3.4)
Oracle Database Server CVE-2007-3854 Vulnerability (CVE-2007-3854)