The QuickEdit module does not properly check access to fields in some circumstances, which can lead to unintended disclosure of field data. Sites are only affected if the QuickEdit module (which comes with the Standard profile) is installed.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: drupal

Published: 2022-02-11T15:50:11

Updated: 2024-08-04T12:25:16.422Z

Reserved: 2020-05-28T00:00:00

Link: CVE-2020-13676

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-02-11T16:15:08.430

Modified: 2022-07-08T18:19:50.060

Link: CVE-2020-13676

cve-icon Redhat

No data.