GHSA-ph2j-5hxq-gxrr

Suggest an improvement
Source
https://github.com/advisories/GHSA-ph2j-5hxq-gxrr
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-ph2j-5hxq-gxrr/GHSA-ph2j-5hxq-gxrr.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-ph2j-5hxq-gxrr
Aliases
  • CVE-2008-4793
Published
2022-05-17T02:19:15Z
Modified
2024-02-09T19:26:52.949666Z
Summary
Drupal Node Validation Bypass in the node module API
Details

The node module API in Drupal 5.x before 5.11 allows remote attackers to bypass node validation and have unspecified other impact via unknown vectors related to contributed modules.

Database specific
{
    "nvd_published_at": "2008-10-29T15:31:00Z",
    "cwe_ids": [
        "CWE-284"
    ],
    "severity": "HIGH",
    "github_reviewed": true,
    "github_reviewed_at": "2024-02-09T19:04:31Z"
}
References

Affected packages

Packagist / drupal/drupal

Package

Name
drupal/drupal
Purl
pkg:composer/drupal/drupal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.0
Fixed
5.11