Description
An issue was discovered in the CheckUser extension for MediaWiki through 1.42.1. The Special:Investigate feature can expose suppressed information for log events. (TimelineService does not support properly suppressing.)
Remediation
References
Related Vulnerabilities
Joomla! Core 3.x.x Security Bypass (3.0.0 - 3.9.19)
MySQL CVE-2019-2830 Vulnerability (CVE-2019-2830)
Jenkins Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-5318)
MediaWiki Insufficiently Protected Credentials Vulnerability (CVE-2020-35623)
Oracle Database Server CVE-2010-4413 Vulnerability (CVE-2010-4413)