CVE-2020-35624: Mediawiki

Medium severity, CVSS 5.3. EPSS: 1% chance of exploitation in the next 30 days.

An issue was discovered in the SecurePoll extension for MediaWiki through 1.35.1. The non-admin vote list contains a full vote timestamp, which may provide unintended clues about how a voting process unfolded.

Affected products

  • Mediawiki Mediawiki: up to and including 1.35.1

Published 2020-12-21. Last modified 2026-06-17.