An issue was discovered in the Translate extension in MediaWiki through 1.36.2. Oversighters cannot undo revisions or oversight on pages where they suppressed information (such as PII). This allows oversighters to whitewash revisions.
References
Link | Resource |
---|---|
https://gerrit.wikimedia.org/r/q/I4d95220ef414337147235f7ebedc9b945c3348e3 | Patch Vendor Advisory |
https://phabricator.wikimedia.org/T286884 | Permissions Required Vendor Advisory |
https://gerrit.wikimedia.org/r/q/I4d95220ef414337147235f7ebedc9b945c3348e3 | Patch Vendor Advisory |
https://phabricator.wikimedia.org/T286884 | Permissions Required Vendor Advisory |
Configurations
History
21 Nov 2024, 06:27
Type | Values Removed | Values Added |
---|---|---|
References | () https://gerrit.wikimedia.org/r/q/I4d95220ef414337147235f7ebedc9b945c3348e3 - Patch, Vendor Advisory | |
References | () https://phabricator.wikimedia.org/T286884 - Permissions Required, Vendor Advisory |
Information
Published : 2022-09-29 03:15
Updated : 2024-11-21 06:27
NVD link : CVE-2021-42049
Mitre link : CVE-2021-42049
CVE.ORG link : CVE-2021-42049
JSON object : View
Products Affected
mediawiki
- mediawiki
CWE