Restful Web Services Project
restful_web_services_project
6 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Restful Web Services Project 1Restful Web Services Jun 4, 2025 Jan 9, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Exposure of Sensitive Information Through Data Queries vulnerability in Drupal RESTful Web Services allows Forceful Browsing.This issue affects RESTful Web Services: from 7.X-2.0 before 7.X-2.10. |
1Restful Web Services Project 1Restful Web Services Nov 21, 2024 Feb 11, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 The RESTful Web Services (restws) module 7.x-1.x before 7.x-1.4 and 7.x-2.x before 7.x-2.1 for Drupal does not properly restrict access to entity write operations, which makes it easier for remote authenticated users wit...Show more |
1Restful Web Services Project 1Restful Web Services May 6, 2026 Jun 15, 2015 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The RESTWS Basic Auth submodule in the RESTful Web Services module 7.x-1.x before 7.x-1.5 and 7.x-2.x before 7.x-2.3 for Drupal caches pages for authenticated requests, which allows remote attackers to obtain sensitive i...Show more |
1Restful Web Services Project 1Restful Web Services May 6, 2026 Apr 6, 2014 N/A· v4 N/A· v3 4.3 MEDIUM· v2 The RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.0-alpha5 for Drupal, when page caching is enabled and anonymous users are assigned RESTWS permissions, allows remote attackers to c...Show more |
1Restful Web Services Project 1Restful Web Services Apr 29, 2026 Mar 19, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Cross-site request forgery (CSRF) vulnerability in the RESTful Web Services (restws) module 7.x-1.x before 7.x-1.2 and 7.x-2.x before 7.x-2.0-alpha4 for Drupal allows remote attackers to hijack the authentication of arbi...Show more |
1Restful Web Services Project 1Restful Web Services Apr 29, 2026 Dec 3, 2012 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Multiple cross-site request forgery (CSRF) vulnerabilities in the RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.1 and 7.x-2.x before 7.x-2.0-alpha3 for Drupal allow remote attackers to hijack the authenticati...Show more |