Vulnerability in Wikimedia Foundation AbuseFilter. This vulnerability is associated with program files includes/auth/AuthManager.Php.
This issue affects AbuseFilter: from fe0b1cb9e9691faf4d8d9bd80646589f6ec37615 before 1.43.2, 1.44.0.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://phabricator.wikimedia.org/T391218 |
|
History
Wed, 04 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
ssvc
|
Wed, 04 Feb 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wikimedia
Wikimedia abusefilter |
|
| Vendors & Products |
Wikimedia
Wikimedia abusefilter |
Mon, 02 Feb 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in Wikimedia Foundation AbuseFilter. This vulnerability is associated with program files includes/auth/AuthManager.Php. This issue affects AbuseFilter: from fe0b1cb9e9691faf4d8d9bd80646589f6ec37615 before 1.43.2, 1.44.0. | |
| Title | Creating a permanent account from a temporary account associates temp username and IP address with real username in AbuseLog | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: wikimedia-foundation
Published: 2026-02-02T23:02:13.300Z
Updated: 2026-02-04T14:49:00.406Z
Reserved: 2025-06-24T22:27:44.092Z
Link: CVE-2025-6592
Updated: 2026-02-04T14:48:53.733Z
Status : Awaiting Analysis
Published: 2026-02-02T23:16:01.783
Modified: 2026-02-04T15:16:13.180
Link: CVE-2025-6592
No data.