Security Advisory

CVE-2025-62699

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-21 03:48:50
Last updated 2025-10-21 19:22:21
Assigner wikimedia-foundation
State PUBLISHED

Description

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia Foundation Mediawiki - Translate Extension allows Footprinting. Translate extension appears to use jobs to make edits to translation pages. This causes the CheckUser tool to log the wrong IP and User-Agent making these edits un-auditable via the CheckUser tool.This issue affects Mediawiki - Translate Extension: from master before 1.39.