Resource Allocation Vulnerability in Wikimedia Foundation MediaWiki - ReportIncident Extension
CVE-2026-5762

5.3MEDIUM

What is CVE-2026-5762?

A vulnerability in the ReportIncident Extension of Wikimedia Foundation's MediaWiki enables allocation of resources without appropriate limits or throttling. This weakness can permit attackers to initiate a denial of service (DoS) through excessive HTTP requests, potentially disrupting service availability for legitimate users. The affected versions of the ReportIncident Extension include 1.43.7, 1.44.4, and 1.45.2, highlighting the importance of updating to secure versions to mitigate this risk.

Affected Version(s)

MediaWiki - ReportIncident Extension 1.43.7

MediaWiki - ReportIncident Extension 1.44.4

MediaWiki - ReportIncident Extension 1.45.2

References

CVSS V4

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Dreamy_Jazz
STran
.