
CVE-2019-6340 Drupal 8.6.9 REST Auth Bypass examples
Three scripts included to demonstrate how Drupal 8.6.9 is vulnerable to CVE-2019-6340:
Download Drupal 8.6.9 from https://www.drupal.org/project/drupal/releases/8.6.9 Do a vanilla install and turn on the four "Web Services" modules.
I did not do all of the investigation on my own, I used a few resources when writing these scripts: