Description
An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. When a user with checkuserlog permissions makes many CheckUserLog API requests in some configurations, denial of service can occur (RequestTimeoutException or upstream request timeout).
Remediation
References
Related Vulnerabilities
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-11327)
IBM WebSEAL Incorrect Default Permissions Vulnerability (CVE-2024-35139)
MediaWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-1581)
WordPress Plugin twitterDash Cross-Site Request Forgery (2.1)