CVE-2019-18987: Mediawiki Abusefilter

Medium severity, CVSS 5.3. EPSS: 1.1% chance of exploitation in the next 30 days.

An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki. Once a specific abuse filter has (accidentally or otherwise) been made public, its previous versions can be exposed, thus potentially disclosing private or sensitive information within the filter's definition.

Affected products

  • Mediawiki Abusefilter: up to and including 1.34

Published 2019-11-15. Last modified 2026-06-17.