Incorrect Authorization vulnerability in Drupal Two-factor Authentication (TFA) allows Forceful Browsing.This issue affects Two-factor Authentication (TFA): from 0.0.0 before 1.10.0.
2025-03-31T22:15:22.100
2025-09-02T18:35:00.753
Analyzed
CVSSv3.1: 8.1 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | two-factor_authentication_project | two-factor_authentication | < 8.x-1.10 | Yes |