CVE-2025-7031: Config Pages Viewer Project Config Pages Viewer
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Missing Authentication for Critical Function vulnerability in Drupal Config Pages Viewer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Config Pages Viewer: from 0.0.0 before 1.0.4.
Affected products
- Config Pages Viewer Project Config Pages Viewer: before 1.0.4 (fixed in 1.0.4)
Published 2025-07-08. Last modified 2026-06-17.