Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Brad Jones

#34375of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2022-8504
7.5
2022-02-11
Drupal · Drupal Core Json:Api Module · CVE-2020-13677
**Name of the Vulnerable Software and Affected Versions** Drupal core JSON:API module (affected versions not specified) **Description** The issue arises when the Drupal core JSON:API module fails to properly restrict access to certain content under specific circumstances, potentially leading to unintended access bypass. It is noted that sites without the JSON:API module enabled are not affected. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.