An issue was discovered in the CheckUser extension for MediaWiki through 1.42.1. It can expose suppressed information for log events. (The log_deleted attribute is not respected.)
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://phabricator.wikimedia.org/T326865 |
|
History
Tue, 17 Jun 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:mediawiki:mediawiki:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: mitre
Published: 2024-07-06T00:00:00
Updated: 2024-08-02T04:33:11.675Z
Reserved: 2024-07-06T00:00:00
Link: CVE-2024-40597
Updated: 2024-07-08T13:18:03.656Z
Status : Analyzed
Published: 2024-07-07T00:15:10.160
Modified: 2025-06-17T20:16:47.530
Link: CVE-2024-40597
No data.