Denial-of-Service Vulnerability in MediaWiki by Wikimedia
CVE-2022-34750
7.5HIGH
What is CVE-2022-34750?
A vulnerability in MediaWiki allows for the creation of unusually large lexeme entries due to a lack of validation on lexeme length. This flaw, present in versions up to 1.38.1, permits users to bypass the existing cap of a thousand characters, potentially resulting in numerous denial-of-service attack vectors affecting both the Wikibase and WikibaseLexeme extensions. This issue particularly influences functionalities related to Special:NewLexeme and Special:NewProperty.
