Description
The Special:DeletedContributions page in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 allows remote attackers to determine if an IP is autoblocked via the "Change block" text.
Remediation
References
Related Vulnerabilities
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.22)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-3065)
UAParser.js Inefficient Regular Expression Complexity Vulnerability (CVE-2022-25927)
Drupal Exposure of Resource to Wrong Sphere Vulnerability (CVE-2020-13670)
Werkzeug WSGI Out-of-bounds Write Vulnerability (CVE-2023-46136)