CVE-2022-29547

Publication date

2022-04-21 00:57:44

Family

mitre

State

PUBLISHED

Description

The CreateRedirect extension before 2022-04-14 for MediaWiki does not properly check whether the user has permissions to edit the target page. This could lead to an unauthorised (or blocked) user being able to edit a page.