Drupal JSON:API Module Access Bypass Vulnerability
BID:106319
Info
Drupal JSON:API Module Access Bypass Vulnerability
| Bugtraq ID: | 106319 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 19 2018 12:00AM |
| Updated: | Dec 19 2018 12:00AM |
| Credit: | Gabe Sullice, Lauri Eskola |
| Vulnerable: |
Drupal JSON API 8.x-1.4 Drupal JSON API 8.x-1.3 Drupal JSON API 8.x-1.2 Drupal JSON API 8.x-1.16 Drupal JSON API 8.x-1.15 Drupal JSON API 8.x-1.14 Drupal JSON API 8.x-1.13 Drupal JSON API 8.x-1.12 Drupal JSON API 8.x-1.11 Drupal JSON API 8.x-1.10 Drupal JSON API 8.x-1.1 Drupal JSON API 8.x-1.0 |
| Not Vulnerable: |
Drupal JSON API 8.x-1.24 |
Solution / Fix
Drupal JSON:API Module Access Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.