drupal/single_content_sync is vulnerable to Missing Authorization
53
Medium Risk
Missing Authorization vulnerability in Drupal Single Content Sync allows Functionality Misuse. While the export feature rightfully bypasses implemented access controls, enabling it to extract all entity data, including private and confidential information, to the mentioned formats, it fails to adequately safeguard the generated output.
You are affected if you are using a version that falls within the vulnerable range.
drupal/single_content_sync is vulnerable to Missing Authorization in versions 1.0.0 - 1.4.11.
Upgrade the drupal/single_content_sync library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant