Description
In MediaWiki through 1.33.0, Special:Redirect allows information disclosure of suppressed usernames via a User ID Lookup.
Remediation
References
Related Vulnerabilities
Trac URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2008-2951)
WordPress Plugin Premium Addons for Elementor Security Bypass (4.5.1)
WordPress 4.5.x Multiple Vulnerabilities (4.5 - 4.5.11)
WordPress Plugin Picturesurf Gallery 'upload.php' Arbitrary File Upload (1.2)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0216)