Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Authenticator Login allows Authentication Bypass.This issue affects Authenticator Login: from 0.0.0 before 2.1.4.
Problem types
CWE-288 Authentication Bypass Using an Alternate Path or Channel
Product status
0.0.0 before 2.1.4
Credits
Pierre Rudloff (prudloff)
Ahmed Raza (ahmed.raza)
Damien McKenna (damienmckenna)
Dan Smith (galooph)
Greg Knaddison (greggles)
Cathy Theys (yesct)
References
www.drupal.org/sa-contrib-2025-096