VendorsOrganic Groups Projectorganic_groups7.x-2.x
Vulnerabilities

Organic Groups Project Organic Groups 7.x-2.x

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2013-7065
The Organic Groups (OG) module 7.x-2.x before 7.x-2.3 for Drupal allows remote attackers to bypass access restrictions and post to arbitrary groups via a group audience field, as demonstrated by the og_group_ref field.
Published 2014-04-29 · Modified
5.8EPSS 0.012
CVE-2013-7068
The Organic Groups (OG) module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users to bypass group restrictions on nodes with all groups set to optional input via an empty group field.
Published 2014-04-29 · Modified
4.9EPSS 0.010