PT-2021-31140 · Packagist · Drupal/Tb Megamenu

Published

2021-09-22

·

Updated

2021-09-22

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
This module provides an admin interface for creating drop down menus that combine Drupal menu items with rich media content.
The module does not use CSRF tokens to protect routes for saving menu configurations.
This vulnerability can be exploited by an anonymous user.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

DRUPAL-CONTRIB-2021-040

Affected Products

Drupal/Tb Megamenu