Description
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Group invite allows Forceful Browsing.This issue affects Group invite: from 0.0.0 before 2.3.9, from 3.0.0 before 3.0.4, from 4.0.0 before 4.0.4.
Problem types
CWE-754 Improper Check for Unusual or Exceptional Conditions
Product status
0.0.0 (semver) before 2.3.9
3.0.0 (semver) before 3.0.4
4.0.0 (semver) before 4.0.4
Credits
Kevin Quillen (kevinquillen)
eduardo morales alberti
Kevin Quillen (kevinquillen)
Nikolay Lobachev (lobsterr)
Ricardo Sanz Ante (tunic)
Greg Knaddison (greggles)
Juraj Nemec (poker10)
References
www.drupal.org/sa-contrib-2026-001