Project:
Date:
2024-February-28
Vulnerability:
Access bypass
CVE IDs:
CVE-2024-13249
Description:
This module provides an alternative mean of rebuilding the Content Access table.
The module doesn't sufficiently reset the state of content access when the module is uninstalled.
Solution:
Install the latest version:
- If you use the node_access_rebuild_progressive module for Drupal 7, upgrade to node_access_rebuild_progressive 7.x-1.2
Reported By:
- Jen Lampton Provisional Member of the Drupal Security Team
Fixed By:
- Shelane French
- Juraj Nemec of the Drupal Security Team
- Jen Lampton Provisional Member of the Drupal Security Team
Coordinated By:
- Greg Knaddison of the Drupal Security Team
- Juraj Nemec of the Drupal Security Team