Exploit maturity not defined.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Access Restriction Bypass vulnerabilities in an interactive lesson.
Start learningUpgrade drupal/workbench_moderation
to version 1.4.0 or higher.
drupal/workbench_moderation provides basic moderation support for revisionable content entities.
Affected versions of this package are vulnerable to Access Restriction Bypass. It adds arbitrary moderation states to Drupal core's "unpublished" and "published" node states, and affects the behavior of node revisions when nodes are published.
In some conditions, content moderation fails to check a users access to use certain transitions, leading to an access bypass.