Intel

AIKIDO-2026-711638

mediawiki/semantic-media-wiki is vulnerable to Denial of Service (DoS)

Denial of Service (DoS)GHSA-vxrm-2g9f-2vqh Published 2 days ago

75

High Risk

This Affects:

PHPmediawiki/semantic-media-wiki
2.5.0 - 7.3.0
Fixed in 7.3.1
Are you affected? Scan for Free

TL;DR

The #set_recurring_event parser function casts its limit parameter to an integer and passes that value into the date generation loop in RecurringEvents, so a page author can request a limit above $smwgMaxNumRecurringEvents and the loop creates an unbounded number of recurring event subobjects. The patch limits the parsed value to the configured maximum before the loop runs.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

mediawiki/semantic-media-wiki is vulnerable to Denial of Service (DoS) in versions 2.5.0 - 7.3.0.

How to fix this

Upgrade the mediawiki/semantic-media-wiki library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform