CVE-2023-37252
LOWDescription
An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. Special:CheckUserLog shows usernames that have been hidden.
Is your site exposed to CVE-2023-37252?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
EPSS — Exploit Prediction
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
Weakness Type (CWE)
References
Frequently Asked Questions
What is CVE-2023-37252? +
How severe is CVE-2023-37252? +
How do I check if I'm vulnerable to CVE-2023-37252? +
Related Vulnerabilities
mpGabinet is vulnerable to Remote Command Execution. An authorized user with access to the application and direct access to the …
Wine ships a .desktop file that registers itself as a MIME handler for EXE files and several other Windows executable …
Edge3 Worker RPC RCE on Airflow 2. This issue affects Apache Airflow Providers Edge3: before 2.0.0 - and only if …
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco …
An unauthenticated remote attacker could use a demo account of the portal to hijack devices that were created in that …
Plex Media Server (PMS) 1.41.7.x through 1.42.0.x before 1.42.1 is affected by incorrect resource transfer between spheres because /myplex/account provides …