Wikimedia Foundation MediaWiki CentralAuth Extension Improper Authentication Vulnerability

Vulnerability

An improper authentication vulnerability has been identified in the Wikimedia Foundation MediaWiki CentralAuth Extension. This vulnerability allows for authentication bypass. It affects CentralAuth Extension versions in the ranges 1.39.X prior to 1.39.13, 1.42.X prior to 1.42.7, and 1.43.X prior to 1.43.2.

Impact

Exploitation of this vulnerability allows for authentication bypass, potentially leading to unauthorized access or actions within the application.

Added: Jul 3, 2025, 5:17 PM
Updated: Jul 3, 2025, 6:17 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
8.1
remediation
0.0
relevance
0.2
threat
3.2
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.