An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. When a user with checkuserlog permissions makes many CheckUserLog API requests in some configurations, denial of service can occur (RequestTimeoutException or upstream request timeout).
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://phabricator.wikimedia.org/T326293 | patch |