CVE Database
/

CVE-2025-12004

Back to search

CVE-2025-12004

Published: Oct 21, 2025

Modified: Oct 21, 2025

PUBLISHED

Description

Incorrect Permission Assignment for Critical Resource vulnerability in The Wikimedia Foundation Mediawiki - Lockdown Extension allows Privilege Abuse. Fixed in Mediawiki Core Action APIThis issue affects Mediawiki - Lockdown Extension: from master before 1.42.

VendorProductVersions

The Wikimedia Foundation

Mediawiki - Lockdown Extension

affected
master - < 1.42

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2025-12004 - Security Vulnerability | QwikSec