drupal/panels is vulnerable to Authentication Bypass
90
Critical Risk
The module doesn't sufficiently protect sensitive routes, allowing an attacker to view and modify blocks within variants without requiring appropriate permission.
You are affected if you are using a version that falls within the vulnerable range.
drupal/panels is vulnerable to Authentication Bypass in versions 1.0.0 - 4.8.0.
Upgrade the drupal/panels library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant