Description
An issue was discovered in MediaWiki through 1.37.1. The CentralAuth extension mishandles a ttl issue for groups expiring in the future.
Remediation
References
Related Vulnerabilities
WordPress Plugin bbPress Like Button SQL Injection (1.5)
WordPress Plugin Pinterest Badge Cross-Site Scripting (1.9.0)
WordPress Plugin AnyMind Widget Cross-Site Request Forgery (1.1)
Oracle Application Server Other Vulnerability (CVE-2005-3446)
WordPress Plugin Link Optimizer Lite Cross-Site Request Forgery (1.4.5)