CNNVD-202601-4681 Information

CNNVD ID

CNNVD-202601-4681

CVE-2025-13982

  • CNNVD Published: 2026-01-28

Description (Chinese)

Drupal Login Time Restriction是Drupal社区的一个登录时间限制插件。 Drupal Login Time Restriction 1.0.3之前版本存在安全漏洞,该漏洞源于跨站请求伪造问题,可能导致跨站请求伪造攻击。

Description (English)

Drupal Login Time Restriation is a time-limited access plugin for the Drupal community. There was a security loophole in the pre-Drupal Login Time Restraction 1.0.3, which arose from cross-site requests for forgery, which could lead to cross-site requests for forgery attacks.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Drupal

Published

2026-01-28

Last Modified

2026-02-24

References

https://www.drupal.org/sa-contrib-2025-120

Patch

https://www.drupal.org/sa-contrib-2025-120

Share on: