Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-25044 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Authenticator Login allows Authentication Bypass.This issue affects Authenticator Login: from 0.0.0 before 2.1.4. |
| Link | Providers |
|---|---|
| https://www.drupal.org/sa-contrib-2025-096 |
|
Thu, 21 Aug 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Authenticator Login Project
Authenticator Login Project authenticator Login |
|
| Weaknesses | CWE-306 | |
| CPEs | cpe:2.3:a:authenticator_login_project:authenticator_login:*:*:*:*:*:drupal:*:* | |
| Vendors & Products |
Authenticator Login Project
Authenticator Login Project authenticator Login |
Sat, 16 Aug 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Drupal
Drupal drupal |
|
| Vendors & Products |
Drupal
Drupal drupal |
Fri, 15 Aug 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 15 Aug 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Authenticator Login allows Authentication Bypass.This issue affects Authenticator Login: from 0.0.0 before 2.1.4. | |
| Title | Authenticator Login - Highly critical - Access bypass - SA-CONTRIB-2025-096 | |
| Weaknesses | CWE-288 | |
| References |
|
Status: PUBLISHED
Assigner: drupal
Published:
Updated: 2026-02-26T17:48:30.817Z
Reserved: 2025-08-13T17:30:30.716Z
Link: CVE-2025-8995
Updated: 2025-08-15T16:42:57.982Z
Status : Analyzed
Published: 2025-08-15T17:15:34.197
Modified: 2025-08-21T19:58:03.550
Link: CVE-2025-8995
No data.
OpenCVE Enrichment
Updated: 2025-08-16T21:40:42Z
EUVD