CVE-2025-48011 | One Time Password up to 1.2.x on Drupal authentication bypass (sa-contrib-2025-062 / EUVD-2025-16012)
A vulnerability has been found in One Time Password up to 1.2.x on Drupal and classified as critical. This vulnerability affects unknown code. The manipulation leads to authentication bypass using alternate channel.
This vulnerability was named CVE-2025-48011. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.