CVE-2025-6597
Publication date 2 February 2026
Last updated 4 February 2026
Ubuntu priority
Description
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/auth/AuthManager.Php. This issue affects MediaWiki: from * before 1.39.13, 1.42.7, 1.43.2, 1.44.0.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| mediawiki | 25.10 questing |
Needs evaluation
|
| 24.04 LTS noble |
Needs evaluation
|
|
| 22.04 LTS jammy |
Needs evaluation
|
|
| 20.04 LTS focal |
Needs evaluation
|
|
| 18.04 LTS bionic |
Needs evaluation
|
References
Other references
- https://www.cve.org/CVERecord?id=CVE-2025-6597
- https://lists.wikimedia.org/hyperkitty/list/[email protected]/thread/TT45WDZ7MDTXXBEFLBMLAJI532O2PN2U/
- https://phabricator.wikimedia.org/T389009
- https://gerrit.wikimedia.org/r/c/mediawiki/core/+/1165116 (master)
- https://gerrit.wikimedia.org/r/c/mediawiki/core/+/1165088 (REL1_39)