Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-28209: Log In or Register with LDAP

An issue was discovered in Mediawiki through 1.37.1. The check for the override-antispoof permission in the AntiSpoof extension is incorrect.

CVE

Auth Login

Click the MediaWiki button below to connect your Wikimedia unified account. Alternatively, click the Wikitech Account (LDAP) button to connect your Developer account credentials.
In case of doubt, check the Phabricator Help.

LDAP Username

LDAP Password

Trouble logging in? Send a login link to your email address.

Content licensed under Creative Commons Attribution-ShareAlike 3.0 (CC-BY-SA) unless otherwise noted; code licensed under GNU General Public License (GPL) or other open source licenses. By using this site, you agree to the Terms of Use, Privacy Policy, and Code of Conduct. · Wikimedia Foundation · Privacy Policy · Code of Conduct · Terms of Use · Disclaimer · CC-BY-SA · GPL

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907