Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-7030


Privilege Defined With Unsafe Actions vulnerability in Drupal Two-factor Authentication (TFA) allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Two-factor Authentication (TFA): from 0.0.0 before 1.11.0.


Published

2025-07-08T21:15:28.773

Last Modified

2025-09-04T17:06:35.090

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-267

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application two-factor_authentication_project two-factor_authentication < 8.x-1.11 Yes

References