CNNVD-202602-067 Information

CNNVD ID

CNNVD-202602-067

CVE-2025-6592

  • CNNVD Published: 2026-02-02

Description (Chinese)

Wikimedia AbuseFilter是Wikimedia基金会的一个编辑过滤工具,用于根据自定义规则自动过滤和阻止可疑的编辑、账号创建等破坏行为。 Wikimedia AbuseFilter存在安全漏洞,该漏洞源于程序文件includes/auth/AuthManager.Php存在问题。

Description (English)

Wikimedia AbuseFilter is an editorial filter of the Wikimedia Foundation, which is used to automatically filter and deter suspicious acts of sabotage, such as editing, account creation and so forth, in accordance with the custom rules. Wikimedia AbuseFilter had a security loophole, which stemmed from a problem with the includes/auth/AuthManager.php.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

维基媒体

Published

2026-02-02

Last Modified

2026-02-24

References

https://phabricator.wikimedia.org/T391218

Patch

https://www.mediawiki.org/wiki/Extension:AbuseFilter

Share on: