High severity7.5NVD Advisory· Published Jan 29, 2021· Updated Jun 17, 2026
CVE-2020-29005
CVE-2020-29005
Description
The API in the Push extension for MediaWiki through 1.35 used cleartext for ApiPush credentials, allowing for potential information disclosure.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: <=1.35
- MediaWiki/Push extensiondescription
Patches
Vulnerability mechanics
References
2- gerrit.wikimedia.org/r/c/mediawiki/extensions/Push/+/625988nvdPatchVendor Advisory
- phabricator.wikimedia.org/T262724nvdIssue TrackingPatchVendor Advisory
News mentions
0No linked articles in our index yet.