Description
An issue was discovered in the MediaWiki through 1.38.2. The community configuration pages for the GrowthExperiments extension could cause a site to become unavailable due to insufficient validation when certain actions (including page moves) were performed.
Remediation
References
Related Vulnerabilities
Rukovoditel Cleartext Storage of Sensitive Information Vulnerability (CVE-2020-11821)
Ruby on Rails URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2023-22797)
Oracle JRE CVE-2012-5068 Vulnerability (CVE-2012-5068)
Django Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-0305)