Unrated severityNVD Advisory· Published Oct 10, 2025· Updated Mar 26, 2026
Protected Pages - Moderately critical - Access bypass - SA-CONTRIB-2025-101
CVE-2025-9551
Description
Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Protected Pages allows Brute Force.This issue affects Protected Pages: from 0.0.0 before 1.8.0, from 7.X-1.0 before 7.X-2.5.
Affected products
2- Range: >=0.0.0, <1.8.0 || >=7.X-1.0, <7.X-2.5
- Drupal/Protected Pagesv5Range: 0.0.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- d7es.tag1.com/security-advisories/protected-pages-moderately-critical-access-bypass-sa-contrib-2025-101mitrethird-party-advisory
- docs.herodevs.com/drupal/release-notes/protected-pagesmitrethird-party-advisory
- www.drupal.org/sa-contrib-2025-101mitrevendor-advisory
News mentions
0No linked articles in our index yet.