DRUPAL-CONTRIB-2020-034

See a problem?
Import Source
https://github.com/DrupalSecurityTeam/drupal-advisory-database/blob/main/advisories/oauth_server_sso/DRUPAL-CONTRIB-2020-034.json
JSON Data
https://api.osv.dev/v1/vulns/DRUPAL-CONTRIB-2020-034
Published
2020-10-14T14:38:16Z
Modified
2026-09-10T03:46:09Z
Summary
[none]
Details

This module enables you login into any OAuth 2.0 compliant application using Drupal credentials.

The 8.x branch of the module is vulnerable to SQL injection.

References
Credits

Affected packages

Packagist:https://packages.drupal.org/8 / drupal/oauth_server_sso

Package

Name
drupal/oauth_server_sso
Purl
pkg:composer/drupal/oauth_server_sso?repository_url=https:%2F%2Fpackages.drupal.org%2F8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
1.0.0
Last Affected
1.0.0
Database specific
Show details
{
    "constraint": "1.0.0"
}

Database specific

affected_versions
"1.0.0"
source
"https://github.com/DrupalSecurityTeam/drupal-advisory-database/blob/main/advisories/oauth_server_sso/DRUPAL-CONTRIB-2020-034.json"