SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-16647

MEDIUM · CVSS 4.1 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The vulnerability in the Disable Login Page module for Drupal allows attackers to bypass authentication mechanisms, potentially granting unauthorized access to restricted areas of the application. This issue affects all versions from 0.0.0 to 1.1.4, and organizations using this module should prioritize remediation to protect against unauthorized access and potential data breaches.

CVE
CVE-2026-16647
Severity
MEDIUM
CVSS
4.1
EPSS
0.27%

Original NVD Description

Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Disable Login Page allows Functionality Bypass. This issue affects Disable Login Page versions: from 0.0.0 to 1.1.4.

Related CVEs

Other vulnerabilities affecting the same vendor(s)