CVE Vulnerabilities

CVE-2023-29139

Published: Mar 31, 2023 | Modified: Apr 11, 2023
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. When a user with checkuserlog permissions makes many CheckUserLog API requests in some configurations, denial of service can occur (RequestTimeoutException or upstream request timeout).

Affected Software

Name Vendor Start Version End Version
Mediawiki Mediawiki * 1.39.3 (including)

References