Junglewise Threat Intelligence

DRUPAL-CONTRIB-2019-069 - This module provides a new UI experience for node editing - Gutenberg editor. The routes used by the Gutenberg editor lack proper permissio

Severity: info · Published 2019-09-25

Technologies: Packagist:Https://Packages.Drupal.Org/8 Drupal/Gutenberg. Vendors: Packagist:Https://Packages.Drupal.Org/8.

Executive brief

This module provides a new UI experience for node editing - Gutenberg editor.

The routes used by the Gutenberg editor lack proper permissions allowing untrusted users to view and modify some content they should not be able to view or modify.

Affected products

  • packagist:https://packages.drupal.org/8 drupal/gutenberg

Related threats