Exposure of Sensitive Information Through Data Queries vulnerability in Drupal RESTful Web Services allows Forceful Browsing.This issue affects RESTful Web Services: from 7.X-2.0 before 7.X-2.10.
When trying to keep information confidential, an attacker can often infer some of the information by using statistics.
Link | Tags |
---|---|
https://www.drupal.org/sa-contrib-2024-019 | vendor advisory |