Описание
The Render cache system in Drupal 7.x before 7.38, when used to cache content by user role, allows remote authenticated users to obtain private content viewed by user 1 by reading the cache.
Релиз | Статус | Примечание |
---|---|---|
artful | DNE | |
bionic | DNE | |
cosmic | DNE | |
devel | DNE | |
disco | DNE | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | DNE | |
kinetic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
artful | not-affected | 7.38-1 |
bionic | DNE | |
cosmic | DNE | |
devel | DNE | |
disco | DNE | |
esm-apps/xenial | not-affected | 7.38-1 |
esm-infra-legacy/trusty | needed | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | DNE |
Показывать по
EPSS
4 Medium
CVSS2
Связанные уязвимости
The Render cache system in Drupal 7.x before 7.38, when used to cache content by user role, allows remote authenticated users to obtain private content viewed by user 1 by reading the cache.
The Render cache system in Drupal 7.x before 7.38, when used to cache ...
The Render cache system in Drupal 7.x before 7.38, when used to cache content by user role, allows remote authenticated users to obtain private content viewed by user 1 by reading the cache.
Уязвимость операционной системы Debian GNU/Linux, позволяющая нарушителю получить доступ к информации, обрабатываемой предыдущим пользователем
EPSS
4 Medium
CVSS2