CVE-2025-8995 | Authenticator Login up to 2.1.3 on Drupal authentication bypass (sa-contrib-2025-096 / EUVD-2025-25044)
A vulnerability was found in Authenticator Login up to 2.1.3 on Drupal and classified as critical. This affects an unknown part. The manipulation leads to authentication bypass using alternate channel.
This vulnerability is uniquely identified as CVE-2025-8995. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.