CVE-2025-6926: Security Authentication Bypass in CentralAuth
Improper Authentication vulnerability in Wikimedia Foundation Mediawiki - CentralAuth Extension allows : Bypass Authentication.This issue affects Mediawiki - CentralAuth Extension: from 1.39.X before 1.39.13, from 1.42.X before 1.42.7, from 1.43.X before 1.43.2.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6926?
CVE-2025-6926 is considered a high severity vulnerability due to its potential to allow unauthorized bypass of authentication.
How do I fix CVE-2025-6926?
To fix CVE-2025-6926, update your Mediawiki - CentralAuth Extension to version 1.39.13, 1.42.7, or 1.43.2 or later.
Which versions are affected by CVE-2025-6926?
CVE-2025-6926 affects Mediawiki - CentralAuth Extension versions before 1.39.13, 1.42.7, and 1.43.2.
What kind of vulnerability is CVE-2025-6926?
CVE-2025-6926 is an improper authentication vulnerability that allows for authentication bypass.
Who is impacted by CVE-2025-6926?
Users of the Mediawiki - CentralAuth Extension prior to the specified patched versions are impacted by CVE-2025-6926.