Vulnerabilities (CVE)

Filtered by vendor Memcache Project Subscribe
Filtered by product Memcache
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-5275 2 Drupal, Memcache Project 2 Drupal, Memcache 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in memcache_admin in the Memcache module 5.x before 5.x-1.10 and 6.x before 6.x-1.6 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2010-5276 2 Drupal, Memcache Project 2 Drupal, Memcache 2024-02-04 4.3 MEDIUM N/A
The Memcache module 5.x before 5.x-1.10 and 6.x before 6.x-1.6 for Drupal does not properly handle the $user object in memcache_admin, which might "lead to a role change not being recognized until the user logs in again."