Description
MediaWiki through 1.32.1 has Incorrect Access Control. Suppressed username or log in Special:EditTags are exposed. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.
Remediation
References
Related Vulnerabilities
WordPress Plugin Duplicator-WordPress Migration Arbitrary File Disclosure (0.3.0)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-1591)
WordPress Plugin Media Library Categories 'termid' Parameter SQL Injection (1.0.6)
SharePoint Deserialization of Untrusted Data Vulnerability (CVE-2020-1439)