CVE-2025-61639: Suppressed blocked IP is visible in Special:BlockList, RC, and other places
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/logging/ManualLogEntry.Php, includes/recentchanges/RecentChangeFactory.Php, includes/recentchanges/RecentChangeStore.Php.
This issue affects MediaWiki: from before 1.39.14, 1.43.4, 1.44.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-61639?
CVE-2025-61639 is classified as a medium severity vulnerability due to its exposure of sensitive information.
How do I fix CVE-2025-61639?
To fix CVE-2025-61639, update your Wikimedia Foundation MediaWiki installation to version 1.39.15 or later.
What type of information is exposed by CVE-2025-61639?
CVE-2025-61639 exposes blocked IP addresses in locations such as Special:BlockList and RecentChanges.
Who is affected by CVE-2025-61639?
Users running versions of Wikimedia Foundation MediaWiki up to and including 1.39.14 are affected by CVE-2025-61639.
What is the potential impact of CVE-2025-61639?
The potential impact of CVE-2025-61639 includes unauthorized access to sensitive information regarding blocked users.