Missing Authorization Vulnerability in Wikimedia MediaWiki AbuseFilter Extension
CVE-2025-53495

Currently unrated

What is CVE-2025-53495?

A missing authorization vulnerability exists in the AbuseFilter Extension of Wikimedia's MediaWiki platform, enabling unauthorized access to sensitive functionalities. This flaw affects multiple versions of the extension, allowing users to bypass security measures and potentially manipulate content without proper authorization. It is essential for users to update to the latest versions to mitigate the risks associated with this vulnerability.

Affected Version(s)

Mediawiki - AbuseFilter Extension 1.39.x < 1.39.13

Mediawiki - AbuseFilter Extension 1.42.x < 1.42.7

Mediawiki - AbuseFilter Extension 1.43.x < 1.43.2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Dreamy Jazz
.
CVE-2025-53495 : Missing Authorization Vulnerability in Wikimedia MediaWiki AbuseFilter Extension