PT-2022-38366 · Packagist · Drupal/Twig Field Value

Publicado

2022-10-12

·

Atualizado

2022-10-12

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
This module enables themers to get partial data from field render arrays. It gives them more control over the output without drilling deep into the render array or using preprocess functions.
The module doesn't sufficiently apply access restrictions when using the filters field label, field value, field raw and field target entity.
This vulnerability is mitigated by the fact that these filters must be used in combination with either unpublished content or access control modules.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

DRUPAL-CONTRIB-2022-058

Produtos afetados

Drupal/Twig Field Value