Description
Cross-Site Request Forgery (CSRF) vulnerability in Drupal Login Time Restriction allows Cross Site Request Forgery.This issue affects Login Time Restriction: from 0.0.0 before 1.0.3.
Problem types
CWE-352 Cross-Site Request Forgery (CSRF)
Product status
0.0.0 (semver) before 1.0.3
Credits
Pierre Rudloff (prudloff)
Kunal Singh (kunal_singh)
Greg Knaddison (greggles)
Juraj Nemec (poker10)
Pierre Rudloff (prudloff)
Jess (xjm)
References
www.drupal.org/sa-contrib-2025-120