CVE-2022-28201
19.09.2022, 21:15
An issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37.2. Users with the editinterface permission can trigger infinite recursion, because a bare local interwiki is mishandled for the mainpage message.Enginsight
Vendor | Product | Version |
---|---|---|
mediawiki | mediawiki | 𝑥 < 1.35.6 |
mediawiki | mediawiki | 1.36.0 ≤ 𝑥 < 1.36.4 |
mediawiki | mediawiki | 1.37.0 ≤ 𝑥 < 1.37.2 |
debian | debian_linux | 10.0 |
debian | debian_linux | 11.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References