CVE-2020-25869: Fedoraproject Fedora

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

An information leak was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. Handling of actor ID does not necessarily use the correct database or correct wiki.

Affected products

  • Fedoraproject Fedora: version 33 only
  • Mediawiki Mediawiki: before 1.31.10 (fixed in 1.31.10); from 1.32.0, before 1.34.4 (fixed in 1.34.4)

Published 2020-09-27. Last modified 2026-06-17.