The REST/JSON project 7.x-1.x for Drupal allows session enumeration, aka SA-CONTRIB-2016-033. NOTE: This project is not covered by Drupal’s security advisory policy.
CVE-2016-20008 (rest/json)
Leave a reply
410-897-9494
Receive RedZone Security Updates in Your InboxContact Us
The REST/JSON project 7.x-1.x for Drupal allows session enumeration, aka SA-CONTRIB-2016-033. NOTE: This project is not covered by Drupal’s security advisory policy.
You must be logged in to post a comment.