Description
MediaWiki through 1.32.1 has Incorrect Access Control. Suppressed username or log in Special:EditTags are exposed. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.
Remediation
References
Related Vulnerabilities
WordPress Plugin AMP for WP-Accelerated Mobile Pages Multiple Unspecified Vulnerabilities (0.9.72)
Atlassian Jira URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2019-11589)
WordPress Plugin Crelly Slider Arbitrary File Upload (1.3.4)
WordPress Plugin YITH WooCommerce Social Login Security Bypass (1.3.4)
WordPress Plugin Redirection HTTP Referrer Header HTML Injection (2.2.9)