From 4dcdcded1e522254a364d09086a6033dc9d3decd Mon Sep 17 00:00:00 2001 From: Violinist bot Date: Wed, 11 Dec 2024 21:52:22 +0000 Subject: [PATCH] Drupal Contrib SA 2024-12-11 (#606) Co-authored-by: eiriksm --- sa_yaml/8/drupal/acquia_dam/sa-contrib-2024-025.yaml | 2 +- .../8/drupal/browser_back_button/sa-contrib-2024-072.yaml | 6 ++++++ sa_yaml/8/drupal/login_disable/sa-contrib-2024-073.yaml | 6 ++++++ 3 files changed, 13 insertions(+), 1 deletion(-) create mode 100644 sa_yaml/8/drupal/browser_back_button/sa-contrib-2024-072.yaml create mode 100644 sa_yaml/8/drupal/login_disable/sa-contrib-2024-073.yaml diff --git a/sa_yaml/8/drupal/acquia_dam/sa-contrib-2024-025.yaml b/sa_yaml/8/drupal/acquia_dam/sa-contrib-2024-025.yaml index 20df87c..71c1a5e 100644 --- a/sa_yaml/8/drupal/acquia_dam/sa-contrib-2024-025.yaml +++ b/sa_yaml/8/drupal/acquia_dam/sa-contrib-2024-025.yaml @@ -1,5 +1,5 @@ link: 'https://www.drupal.org/sa-contrib-2024-025' -title: 'Acquia DAM - Moderately critical - Access bypass, Denial of Service - SA-CONTRIB-2024-025' +title: 'Acquia DAM - Moderately critical - Cross Site Request Forgery, Denial of Service - SA-CONTRIB-2024-025' branches: 1.0.x: { time: '2024-06-05 12:00:00', versions: ['>=1.0.0', '<1.0.13'] } 1.1.x: { time: '2024-06-05 12:00:00', versions: ['>=1.0.0', '<1.1.0-beta3'] } diff --git a/sa_yaml/8/drupal/browser_back_button/sa-contrib-2024-072.yaml b/sa_yaml/8/drupal/browser_back_button/sa-contrib-2024-072.yaml new file mode 100644 index 0000000..fecef37 --- /dev/null +++ b/sa_yaml/8/drupal/browser_back_button/sa-contrib-2024-072.yaml @@ -0,0 +1,6 @@ +link: 'https://www.drupal.org/sa-contrib-2024-072' +title: 'Browser Back Button - Moderately critical - Cross site scripting - SA-CONTRIB-2024-072' +branches: + 2.0.x: { time: '2024-12-11 12:00:00', versions: ['>=2.0.0', '<2.0.2'] } +composer-repository: 'https://packages.drupal.org/8' +reference: 'composer://drupal/browser_back_button' diff --git a/sa_yaml/8/drupal/login_disable/sa-contrib-2024-073.yaml b/sa_yaml/8/drupal/login_disable/sa-contrib-2024-073.yaml new file mode 100644 index 0000000..d33a8b1 --- /dev/null +++ b/sa_yaml/8/drupal/login_disable/sa-contrib-2024-073.yaml @@ -0,0 +1,6 @@ +link: 'https://www.drupal.org/sa-contrib-2024-073' +title: 'Login Disable - Critical - Access bypass - SA-CONTRIB-2024-073' +branches: + 2.1.x: { time: '2024-12-11 12:00:00', versions: ['>=2.0.0', '<2.1.1'] } +composer-repository: 'https://packages.drupal.org/8' +reference: 'composer://drupal/login_disable'