Description
An issue was discovered in the ProofreadPage extension for MediaWiki through 1.39.3. It leaks information about a suppressed user via the API and config variables.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://phabricator.wikimedia.org/T326952 |
|
History
Mon, 14 Sep 2026 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in the ProofreadPage extension for MediaWiki through 1.39.3. It leaks information about a suppressed user via the API and config variables. | |
| Weaknesses | CWE-669 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-09-14T05:16:42.353Z
Reserved: 2023-06-29T00:00:00.000Z
Link: CVE-2023-37253
No data.
Status : Received
Published: 2026-09-14T06:16:53.740
Modified: 2026-09-14T06:16:53.740
Link: CVE-2023-37253
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-669
Incorrect Resource Transfer Between Spheres