CVE Vulnerabilities

CVE-2023-22909

Published: Jan 10, 2023 | Modified: Apr 07, 2025
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CVSS 2.x
RedHat/V2
RedHat/V3
5.3 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. SpecialMobileHistory allows remote attackers to cause a denial of service because database queries are slow.

Affected Software

NameVendorStart VersionEnd Version
MediawikiMediawiki*1.35.9 (excluding)
MediawikiMediawiki1.36.0 (including)1.38.5 (excluding)
MediawikiMediawiki1.39.0 (including)1.39.0 (including)
MediawikiMediawiki1.39.0-rc0 (including)1.39.0-rc0 (including)
MediawikiMediawiki1.39.0-rc1 (including)1.39.0-rc1 (including)
MediawikiUbuntubionic*
MediawikiUbuntufocal*
MediawikiUbuntukinetic*
MediawikiUbuntulunar*
MediawikiUbuntumantic*
MediawikiUbuntuoracular*
MediawikiUbuntuplucky*
MediawikiUbuntutrusty*
MediawikiUbuntuxenial*

References