Description
Incorrect Authorization vulnerability in Drupal Entity Share allows Forceful Browsing.This issue affects Entity Share: from 0.0.0 before 3.13.0.
Problem types
CWE-863 Incorrect Authorization
Product status
0.0.0 (semver) before 3.13.0
Credits
Jürgen Haas (jurgenhaas)
Florent Torregrosa (grimreaper)
Joachim Noreiko (joachim)
Bram Driesen (bramdriesen)
cilefen (cilefen)
Greg Knaddison (greggles)
Drew Webber (mcdruid)
Juraj Nemec (poker10)
Jess (xjm)
References
www.drupal.org/sa-contrib-2025-123