Twilio · Twilio · CVE-2014-9023
**Name of the Vulnerable Software and Affected Versions**
Twilio module versions 7.x-1.x through 7.x-1.8
**Description**
The issue allows remote authenticated users to read and modify authentication tokens by leveraging the "access administration pages" Drupal permission, due to improper access restriction to the Twilio administration pages.
**Recommendations**
For Twilio module versions 7.x-1.x through 7.x-1.8, update to version 7.x-1.9 or later to resolve the issue.