Boletines de Vulnerabilidades

Drupal core - Moderately critical - Access bypass - SA-CORE-2020-008

   
Software afectado Drupal
 
Project: Drupal coreDate: 2020-September-16Security risk: Moderately critical 12∕25 AC:Basic/A:None/CI:Some/II:None/E:Theoretical/TD:DefaultVulnerability: Access bypassCVE IDs: CVE-2020-13667Description: The experimental Workspaces module allows you to create multiple workspaces on your site in which draft content can be edited before being published to the live workspace.The Workspaces module doesnt sufficiently check access permissions when switching workspaces, leading to an access

More info:

https://www.drupal.org/sa-core-2020-008