Vulnerabilities (CVE)

Filtered by vendor Two-factor Authentication Project Subscribe
Filtered by product Two-factor Authentication
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-31694 1 Two-factor Authentication Project 1 Two-factor Authentication 2025-09-02 N/A 8.1 HIGH
Incorrect Authorization vulnerability in Drupal Two-factor Authentication (TFA) allows Forceful Browsing.This issue affects Two-factor Authentication (TFA): from 0.0.0 before 1.10.0.
CVE-2024-13279 1 Two-factor Authentication Project 1 Two-factor Authentication 2025-09-02 N/A 9.8 CRITICAL
Session Fixation vulnerability in Drupal Two-factor Authentication (TFA) allows Session Fixation.This issue affects Two-factor Authentication (TFA): from 0.0.0 before 1.8.0.
CVE-2024-13239 1 Two-factor Authentication Project 1 Two-factor Authentication 2025-06-04 N/A 9.8 CRITICAL
Weak Authentication vulnerability in Drupal Two-factor Authentication (TFA) allows Authentication Abuse.This issue affects Two-factor Authentication (TFA): from 0.0.0 before 1.5.0.