The QuickEdit module does not properly check access to fields in some circumstances, which can lead to unintended disclosure of field data. Sites are only affected if the QuickEdit module (which comes with the Standard profile) is installed.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.drupal.org/sa-core-2021-009 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: drupal
Published: 2022-02-11T15:50:11
Updated: 2024-08-04T12:25:16.422Z
Reserved: 2020-05-28T00:00:00
Link: CVE-2020-13676
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-02-11T16:15:08.430
Modified: 2024-11-21T05:01:44.587
Link: CVE-2020-13676
Redhat
No data.