High severity7.5NVD Advisory· Published Jul 2, 2021· Updated Jun 17, 2026
CVE-2021-36125
CVE-2021-36125
Description
An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. The Special:GlobalRenameRequest page is vulnerable to infinite loops and denial of service attacks when a user's current username is beyond an arbitrary maximum configuration value (MaxNameChars).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Range: <=1.36
<=1.36+ 1 more
- (no CPE)range: <=1.36
- (no CPE)
Patches
Vulnerability mechanics
References
2- gerrit.wikimedia.org/r/q/I97d8b3236b5abed8ba9a9c4d3ab5050c2e782c22nvdPatchVendor Advisory
- phabricator.wikimedia.org/T260865nvdExploitIssue TrackingPatchVendor Advisory
News mentions
0No linked articles in our index yet.