← back
CVE-2018-0503

$wgRateLimits entry for 'user' overrides 'newbie'

EPSS 1.5%
Mediawiki 1.31 before 1.31.1, 1.30.1, 1.29.3 and 1.27.5 contains a flaw where contrary to the documentation, $wgRateLimits entry for 'user' overrides that for 'newbie'.
Affected products
mediawiki · mediawiki

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →