SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-13244

HIGH · CVSS 8.1 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-07-10 · Last synced 2026-08-09

CyberRota Analysis

AI-Generated

Drupal Tealium iQ Tag Management versions 0.0.0 to 2.4.0 are vulnerable to an improper control of dynamically-determined object attributes, which can lead to object injection attacks. This vulnerability could allow attackers to manipulate object attributes, potentially compromising the integrity and security of the application. Organizations using affected versions should prioritize patching this vulnerability to mitigate the risk of exploitation.

CVE
CVE-2026-13244
Severity
HIGH
CVSS
8.1
EPSS
0.25%

Original NVD Description

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Tealium iQ Tag Management allows Object Injection. This issue affects Tealium iQ Tag Management versions: from 0.0.0 to 2.4.0.