Early access: the directory is still filling out, and every rating here is a reported experience.

Security releases

Drupal

Drupal core - Moderately critical - Access bypass - SA-CORE-2025-002

SA-CORE-2025-002 Feb 19, 2025 Source: Vendor

Imported by the Drupal advisory catcher from https://www.drupal.org/sa-core-2025-002. 1 reporter(s), 4 fixer(s). Draft. Review before publishing.

Source of record The credited names below are quoted verbatim from the vendor's own advisory: https://www.drupal.org/sa-core-2025-002
Are you credited here? Sign in and claim your line: it is yours immediately, no review queue. The name the vendor printed stays next to your handle for anyone to check against the advisory above, and any member who thinks a claim is wrong can refute it.

Credited

4 lines
Showing 1–4 of 4
CVE-2025-31673 BR2025-0000-008709 unclaimed
Drupal core - Moderately critical - Access bypass - SA-CORE-2025-002
Credited as jeff cardwell
CVE-2025-31673 BR2025-0000-008710 unclaimed
Drupal core - Moderately critical - Access bypass - SA-CORE-2025-002
Credited as Benji Fisher (benjifisher) of the Drupal Security Team
CVE-2025-31673 BR2025-0000-008711 unclaimed
Drupal core - Moderately critical - Access bypass - SA-CORE-2025-002
Credited as Mingsong (mingsong) Provisional Member of the Drupal Security Team
CVE-2025-31673 BR2025-0000-008712 unclaimed
Drupal core - Moderately critical - Access bypass - SA-CORE-2025-002
Credited as Juraj Nemec (poker10) of the Drupal Security Team