CVE-2012-2304: Emil Stjerneman Linkit

Medium severity, CVSS 4.3. EPSS: 2.1% chance of exploitation in the next 30 days.

The Linkit module 7.x-2.x before 7.x-2.3 for Drupal, when using an entity access module, does not check permissions when searching for entities, which allows remote attackers to obtain sensitive information via unspecified vectors.

Affected products

  • Emil Stjerneman Linkit: version 7.x-2.0 only; version 7.x-2.1 only; version 7.x-2.2 only; version 7.x-2.3 only

Published 2012-08-14. Last modified 2026-06-16.