This module provides a revision UI to Linky entities.
The module doesn't sufficiently respect access restrictions to certain entities when used in conjunction with specific modules.
This vulnerability is mitigated by the fact that an attacker must have a role with any of the permissions provided by Linky Revision UI, and another affected module must be enabled.
Install the latest version:
- If you use the Linky Revision UI module for Drupal 8.x, upgrade to Linky Revision UI 2.127.1
- Michael Strelan
- Lee Rowlands of the Drupal Security Team
- Greg Knaddison of the Drupal Security Team
- Drew Webber of the Drupal Security Team
- Lee Rowlands of the Drupal Security Team