CVE-2023-37301: Mediawiki
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue was discovered in SubmitEntityAction in Wikibase in MediaWiki through 1.39.3. Because it doesn't use EditEntity for undo and restore, the intended interaction with AbuseFilter does not occur.
Affected products
- Mediawiki Mediawiki: up to and including 1.39.3
Published 2023-06-30. Last modified 2026-06-17.