Description
Mediawiki 1.31 before 1.31.1, 1.30.1, 1.29.3 and 1.27.5 contains a flaw where contrary to the documentation, $wgRateLimits entry for 'user' overrides that for 'newbie'.
Remediation
References
Related Vulnerabilities
MySQL CVE-2019-2580 Vulnerability (CVE-2019-2580)
Squid Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-10002)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-5471)
WordPress Plugin CardGate Payments for WooCommerce Security Bypass (3.1.15)