SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-13241

MEDIUM · CVSS 6.5 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-07-10 · Last synced 2026-08-09

CyberRota Analysis

AI-Generated

A missing authorization vulnerability in Drupal Paragraphs versions 0.0.0 to 1.21.0 allows attackers to exploit forceful browsing, potentially gaining unauthorized access to restricted content. Organizations using affected versions of Drupal should prioritize patching this vulnerability to mitigate the risk of unauthorized data exposure. This is particularly critical for sites that handle sensitive information or user-generated content.

CVE
CVE-2026-13241
Severity
MEDIUM
CVSS
6.5
EPSS
0.16%

Original NVD Description

Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing. This issue affects Paragraphs versions: from 0.0.0 to 1.21.0.

Related CVEs

Other vulnerabilities affecting the same vendor(s)