oss-sec mailing list archives

Re: CVE request for Drupal core, and contributed modules


From: Forest Monsen <forest.monsen () gmail com>
Date: Mon, 9 Dec 2013 16:25:38 -0800

On Fri, Dec 6, 2013 at 3:19 PM, Forest Monsen <forest.monsen () gmail com>wrote:

Now the contributed modules:
SA-CONTRIB-2013-093 - Invitation - Access Bypass
https://drupal.org/node/2140097

SA-CONTRIB-2013-094 - EU Cookie Compliance - Cross Site Scripting (XSS)
https://drupal.org/node/2140123

SA-CONTRIB-2013-095 - Organic Groups - Access bypass
https://drupal.org/node/2140217

SA-CONTRIB-2013-096 - Entity reference - Access bypass
https://drupal.org/node/2140237

SA-CONTRIB-2013-097 - OG Features - Access bypass
https://drupal.org/node/2149791


These still require CVE identifiers. Thanks!

Forest

Current thread: