CVE-2025-6592
Unknown
Unknown - Not Provided
Authentication Bypass Vulnerability in Wikimedia AbuseFilter AuthManager
Publication date: 2026-02-02
Last updated on: 2026-02-04
Assigner: wikimedia-foundation
Description
Description
Vulnerability in Wikimedia Foundation AbuseFilter. This vulnerability is associated with program files includes/auth/AuthManager.Php.
This issue affects AbuseFilter: from fe0b1cb9e9691faf4d8d9bd80646589f6ec37615 before 1.43.2, 1.44.0.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| wikimedia_foundation | abusefilter | From fe0b1cb9e9691faf4d8d9bd80646589f6ec37615 (inc) to 1.43.2 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-284 | The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor. |