SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-13239

MEDIUM · CVSS 6.5 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-07-10 · Last synced 2026-08-09

CyberRota Analysis

AI-Generated

Drupal WissKI versions 0.0.0 to 4.2.0 are vulnerable to a missing authorization flaw that enables forceful browsing, potentially allowing unauthorized access to restricted resources. Organizations using these versions should prioritize remediation to prevent unauthorized data exposure or manipulation. This vulnerability is particularly relevant for web administrators and developers managing Drupal-based applications.

CVE
CVE-2026-13239
Severity
MEDIUM
CVSS
6.5
EPSS
0.16%

Original NVD Description

Missing Authorization vulnerability in Drupal WissKI allows Forceful Browsing. This issue affects WissKI versions: from 0.0.0 to 4.2.0.