Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31777
HistoryAug 22, 2021 - 2:25 a.m.

Authorization Bypass

2021-08-2202:25:54
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.012 Low

EPSS

Percentile

85.2%

mediawiki is vulnerable to authorization bypass. When a bot account has a sitewide block applied, it is to purge pages through the MediaWiki Action API (which a “sitewide block” should have prevented).