Notify Project maintains a narrowly scoped notification service product whose vulnerability exposure centers on information-disclosure weaknesses, reflecting challenges around access control and data handling in communications infrastructure. Current severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Notify Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-9154MEDIUM The Notify module 7.x-1.x before 7.x-1.1 for Drupal does not properly restrict access to (1) new or (2) modified nodes or (3) their fields, which allows remote authenticated users | Dec 1, 2014 | 4.0 | 13 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Notify Project.
Media articles that mention a CVE ID that affects a product developed by Notify Project — matched by CVE ID, not by vendor name.