Vulnerabilities (CVE)

Filtered by vendor Twilio Project Subscribe
Filtered by product Twilio
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-9023 1 Twilio Project 1 Twilio 2024-02-28 5.5 MEDIUM N/A
The Twilio module 7.x-1.x before 7.x-1.9 for Drupal does not properly restrict access to the Twilio administration pages, which allows remote authenticated users to read and modify authentication tokens by leveraging the "access administration pages" Drupal permission.