CVE-2025-47707

All FrameworksDrupalCWE-288CVE-2025-47707

CVE-2025-47707

State: PUBLISHED · Published: 2025-05-14 · Updated: 2025-05-15 · Assigner: drupal
Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Enterprise MFA - TFA for Drupal allows Authentication Bypass.This issue affects Enterprise MFA - TFA for Drupal: from 0.0.0 before 4.7.0, from 5.0.0 before 5.2.0.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/47xxx/CVE-2025-47707.json