Fedora Account System
Red Hat Associate
Red Hat Customer
Access Bypass vulnerability in Drupal Core allows for an attacker to leverage the way that HTML is rendered for affected forms in order to exploit the vulnerability. This issue affects: Drupal Core 8.8.x versions prior to 8.8.10; 8.9.x versions prior to 8.9.6; 9.0.x versions prior to 9.0.6. Reference: https://nvd.nist.gov/vuln/detail/CVE-2020-13668
Created drupal7 tracking bugs for this issue: Affects: epel-all [bug 2054459] Affects: fedora-all [bug 2054457] Created drupal8 tracking bugs for this issue: Affects: fedora-all [bug 2054458]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.