Vulnerability Bulletins |
CVE-2026-6816 |
|
| Affected software | DRUPAL |
|
An access bypass vulnerability in Drupal TFA Basic Plugins allows users with the administer users permission to view or generate recovery codes for other users. This issue affects TFA Basic Plugins: from 7.x-1.0 through 7.x-1.2. |
|
Link: |
|
| https://nvd.nist.gov/vuln/detail/CVE-2026-6816 | |






