CVE-2015-1568 Information
Feb 14, 2021
cve
Description
Cross-site request forgery (CSRF) vulnerability in the GD Infinite Scroll module before 7.x-1.4 for Drupal allows remote attackers to hijack the authentication of users with the \edit gd infinite scroll settings\ permission for requests that delete settings via unspecified vectors.
Reference
https://exchange.xforce.ibmcloud.com/vulnerabilities/100628 https://www.drupal.org/node/2415219 https://www.drupal.org/node/2415885
Share on: