This site is no longer actively maintained. It exists for historical purposes as an example of Phabricator integration and Lua scripting.

T292763: CVE-2021-44854: Rest API incorrectly publicly caches results from private wikis

From cpt
Phabricator Link T292763
Status resolved
Priority High (red)
Points
Phabricator Task Created 2021/10/07 12:58 PM
Wiki Page Created 2021/11/12 05:35 PM
Phabricator Task Last Modified 2021/12/15 02:52 PM
Wiki Page Last Updated 2021/12/15 04:37 PM
Phabricator Task Closed 2021/11/11 06:44 AM
Authored By Dylsss
Assigned To nnikkhoui (Nikki Nikkhoui)
Projects
Platform Engineering Initiative Column
Platform Team Workboards Column
Subtasks
    Parent Tasks


    Column Transitions: (Added project: ⇑, Removed project: ⇓,Entered column: ⇒, Exited column: ⇐)

    Project Column Date
    Security 7 October 2021
    Security-Team 7 October 2021
    Vector 7 October 2021
    Desktop Improvements 7 October 2021
    SRE 7 October 2021
    MediaWiki-REST-API 7 October 2021
    Platform Engineering 7 October 2021
    API Platform 7 October 2021
    Vuln-Infoleak 8 October 2021
    API Platform Backlog 12 October 2021
    API Platform Work In Progress 12 October 2021
    Security-Team Incoming 13 October 2021
    Security-Team Watching 13 October 2021
    SecTeam-Processed 13 October 2021
    API Platform Work In Progress 19 October 2021
    API Platform QA/Review 19 October 2021
    MW-1.38-notes (1.38.0-wmf.6; 2021-10-26) 20 October 2021
    API Platform QA/Review 20 October 2021
    API Platform Done 20 October 2021
    MW-1.35-notes 25 October 2021
    MW-1.36-notes 25 October 2021
    MW-1.37-notes 25 October 2021
    Security-Team Watching 12 November 2021
    Security-Team Our Part Is Done 12 November 2021