[SECURITY-L] Drupal core - Moderately critical - Multiple vulnerabilities

CSIRT Unicamp security em unicamp.br
Quarta Julho 20 15:06:40 -03 2022


Drupal core - Moderately critical - Multiple vulnerabilities -
SA-CORE-2022-015
View online: https://www.drupal.org/sa-core-2022-015
Project: Drupal core [1]
Date: 2022-July-20
Security risk: *Moderately critical* 11∕25
AC:Complex/A:User/CI:Some/II:Some/E:Theoretical/TD:Uncommon [2]
Vulnerability: Multiple vulnerabilities

Drupal core - Critical - Arbitrary PHP code execution - SA-CORE-2022-014
View online: https://www.drupal.org/sa-core-2022-014
Project: Drupal core [1]
Date: 2022-July-20
Security risk: *Critical* 15∕25
AC:Basic/A:Admin/CI:All/II:All/E:Theoretical/TD:Uncommon [2]
Vulnerability: Arbitrary PHP code execution

Drupal core - Moderately critical - Access Bypass - SA-CORE-2022-013
View online: https://www.drupal.org/sa-core-2022-013
Project: Drupal core [1]
Date: 2022-July-20
Security risk: *Moderately critical* 12∕25
AC:Basic/A:User/CI:Some/II:Some/E:Theoretical/TD:Uncommon [2]
Vulnerability: Access Bypass

Drupal core - Moderately critical - Information Disclosure -
SA-CORE-2022-012
View online: https://www.drupal.org/sa-core-2022-012
Project: Drupal core [1]
Date: 2022-July-20
Security risk: *Moderately critical* 13∕25
AC:None/A:None/CI:Some/II:None/E:Theoretical/TD:Uncommon [2]
Vulnerability: Information Disclosure

===
Computer Security Incident Response Team - CSIRT
Universidade Estadual de Campinas - Unicamp
Centro de Computacao - CCUEC
GnuPG Public Key: http://www.security.unicamp.br/security.asc [^]
Contato: +55 19 3521-2289 ou INOC-DBA: 1251*830
-------------- Próxima Parte ----------
Um anexo em HTML foi limpo...
URL: <http://www.listas.unicamp.br/pipermail/security-l/attachments/20220720/fc96d8a5/attachment.html>


Mais detalhes sobre a lista de discussão SECURITY-L