01563: Security Vulnerability with unfiltered variable

Summary: Security Vulnerability with unfiltered variable
Created: 2026-08-03 19:33
Status: Closed, fixed for 2.7.5
Category: Bug
Assigned:
Priority: 35
Version: 2.7.4
OS: Windows 11 / PHP 8.x

Description:
[...details and exploit removed by Petko...]

I've found another bug in "pmwiki.php" involving an unfiltered variable. It's difficult to assess the severity of the bug because... the chain of conditions required to do so is very long. Michael Engelke

This is an interesting catch, thanks! ... I cannot test it on Windows, please report if it is fixed. ... --Petko

Yes, I can confirm that the bug has been fixed. ... Michael Engelke

I agree with you but for practical reasons I am more worried about ... --Petko

I have to admit that I hadn't thought that far ahead. However, the vulnerability is very old—over 21 years old ... Michael Engelke

I was able to test the bug on a Windows wiki, and for me it is Windows-Specific, Severity Level: Medium or High. I've deleted parts of this discussion here to prevent abuse and exploits, with the deleted page archived for our reference (emailed to you). I'll be releasing 2.7.5 very shortly. --Petko