CVE-2026-13707
Published:July 01, 2026
Updated:July 21, 2026
Session fixation vulnerability in Wikimedia Foundation OAuth.
This vulnerability is associated with program files src/Backend/MWOAuthServer.Php.
This issue affects OAuth: from * through 1.46.0, 1.45.4, 1.44.6, 1.43.9.
Related Resources (1)
Do you need more information?
Contact UsWeakness Type (CWE)
Session Fixation
EPSS
Base Score:
0.24