The Login Security Project maintains a focused authentication and access-control product where the observed vulnerability pattern centers on memory-safety and authorization boundaries. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Login Security Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-2198CRITICAL The Login Security module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.3 for Drupal allows attackers to bypass intended restrictions via a crafted username. | Jan 30, 2020 | 9.8 | 29 | NO | NO |
CVE-2013-2197MEDIUM The Login Security module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.3 for Drupal, when using the login delay option, allows remote attackers to cause a denial of service (CPU | Aug 28, 2013 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Login Security Project.
Media articles that mention a CVE ID that affects a product developed by Login Security Project — matched by CVE ID, not by vendor name.