Drupal REST Views Sensitive Information Insertion Vulnerability Allowing Forceful Browsing

Vulnerability

A vulnerability in Drupal REST Views prior to 3.0.1 allows for the insertion of sensitive information into sent data, facilitating forceful browsing. This issue arises from improper handling of data in REST Views, potentially leading to unauthorized access or manipulation of resources.

Impact

Exploitation of this vulnerability could result in unauthorized access to sensitive information or resources through forceful browsing techniques.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
7.4
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.