CVE-2024-47848: User can review/unreview articles while blocked
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia Foundation Mediawiki - PageTriage allows Authentication Bypass.This issue affects Mediawiki - PageTriage: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47848?
CVE-2024-47848 is considered a high-severity vulnerability due to its potential for authentication bypass.
How do I fix CVE-2024-47848?
To fix CVE-2024-47848, upgrade Mediawiki - PageTriage to version 1.39.9, 1.41.3, or 1.42.2.
What versions of Mediawiki - PageTriage are affected by CVE-2024-47848?
CVE-2024-47848 affects Mediawiki - PageTriage versions from 1.39.0 to 1.39.9, 1.41.0 to 1.41.3, and 1.42.0 to 1.42.2.
What type of vulnerability is CVE-2024-47848?
CVE-2024-47848 is classified as an exposure of sensitive information due to authentication bypass.
Who is affected by CVE-2024-47848?
Users of Wikimedia Foundation Mediawiki - PageTriage versions below the fixed releases are at risk from CVE-2024-47848.