Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Nikolay Lobachev

#48233de 53,633
5.3CVSS total
Vulnerabilidades · 1
PT-2026-2978
5.3
2026-01-14
Drupal · Group Invite · CVE-2026-0944
**Name of the Vulnerable Software and Affected Versions** Drupal Group invite versions 0.0.0 through 2.3.8 Drupal Group invite versions 3.0.0 through 3.0.3 Drupal Group invite versions 4.0.0 through 4.0.3 **Description** An improper check for unusual or exceptional conditions exists in the Group invite module, potentially allowing forceful browsing. The issue arises from insufficient access checks under specific circumstances, which could allow unauthorized users to access group content. This is mitigated by the fact that the vulnerability only occurs when uncommon actions are taken by a user with permission to create group invites. **Recommendations** Update Drupal Group invite to version 2.3.9 or later. Update Drupal Group invite to version 3.0.4 or later. Update Drupal Group invite to version 4.0.4 or later.