{"id":"CVE-2019-6342","details":"An access bypass vulnerability exists when the experimental Workspaces module in Drupal 8 core is enabled. This can be mitigated by disabling the Workspaces module. It does not affect any release other than Drupal 8.7.4.","aliases":["DRUPAL-CORE-2019-008","GHSA-xq62-62c9-22mg"],"modified":"2026-07-08T20:57:45.504701Z","published":"2020-05-28T21:15:11.373Z","references":[{"type":"ADVISORY","url":"https://www.drupal.org/sa-core-2019-008"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/drupal/drupal","events":[{"introduced":"dbde118e3946d8fe43e2da00f73b255ff9146327"},{"last_affected":"dbde118e3946d8fe43e2da00f73b255ff9146327"}],"database_specific":{"cpe":"cpe:2.3:a:drupal:drupal:8.7.4:*:*:*:*:*:*:*","extracted_events":[{"introduced":"8.7.4"},{"last_affected":"8.7.4"}],"source":"CPE_STRING"}}],"versions":["8.7.4"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-6342.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}