PT-2025-44356 · Drupal · Drupal Access

Gergely Lekli

+2

·

Published

2025-10-29

·

Updated

2025-10-30

·

CVE-2025-10928

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Drupal Access code versions prior to 2.0.5
Description An improper restriction of excessive authentication attempts exists in Drupal Access code, potentially allowing brute force attacks. The issue impacts the Access code module.
Recommendations Update to version 2.0.5 or later.

Fix

Improper Restriction of Excessive Authentication Attempts

Weakness Enumeration

Related Identifiers

CVE-2025-10928
DRUPAL-CONTRIB-2025-108
GHSA-27MC-9399-R9MX

Affected Products

Drupal Access