CVE-2020-25813

MEDIUM

MediaWiki <1.31.10-1.34.4 - Info Disclosure

Title source: llm
STIX 2.1

Description

In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, Special:UserRights exposes the existence of hidden users.

References (4)

Core 4

Scores

CVSS v3 5.3
EPSS 0.0037
EPSS Percentile 58.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

Status published
Products (3)
fedoraproject/fedora 33
mediawiki/core 1.31.0 - 1.31.9Packagist
mediawiki/mediawiki < 1.31.10
Published Sep 27, 2020
Tracked Since Feb 18, 2026