Description
The Special:DeletedContributions page in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 allows remote attackers to determine if an IP is autoblocked via the "Change block" text.
Remediation
References
Related Vulnerabilities
WordPress Plugin Site Offline Or Coming Soon Or Maintenance Mode Cross-Site Request Forgery (1.4.3)
Oracle HTTP Server Uncontrolled Search Path Element Vulnerability (CVE-2019-5443)
Oracle JRE CVE-2013-1563 Vulnerability (CVE-2013-1563)
WordPress Plugin Integrator 'redirect_to' Parameter Cross-Site Scripting (1.32)