Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Casey

#20206of 53,622
12.8Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2025-2105
5.3
2024-10-30
Drupal · Ohdear Integration · CVE-2024-13290
**Name of the Vulnerable Software and Affected Versions** OhDear Integration versions 0.0.0 through 2.0.3 **Description** The issue is related to incorrect authorization in the OhDear Integration module for Drupal, allowing forceful browsing. This can enable a remote attacker to access confidential information. **Recommendations** For OhDear Integration versions 0.0.0 through 2.0.3, update to version 2.0.4 or later to resolve the issue.
PT-2017-17024
7.5
2017-03-16
Drupal · Drupal · CVE-2017-6377
**Name of the Vulnerable Software and Affected Versions** Drupal versions 8.2.x before 8.2.7 **Description** The issue arises when adding a private file via the editor, where the editor fails to correctly check access for the attached file, leading to an access bypass. **Recommendations** For versions 8.2.x before 8.2.7, update to version 8.2.7 or later to resolve the issue.