PT-2022-38344 · Packagist · Drupal Quick Edit
Published
2022-02-16
·
Updated
2022-02-16
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
This advisory addresses a similar issue to Drupal core - Moderately critical - Information disclosure - SA-CORE-2022-004.
The Quick Edit module does not properly check entity access in some circumstances. This could result in users with the "access in-place editing" permission viewing some content they are are not authorized to access.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Drupal Quick Edit