SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-55810

HIGH · CVSS 8.1 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-07-10 · Last synced 2026-08-09

CyberRota Analysis

AI-Generated

A vulnerability in the Plotly.js Graphing library used by Drupal allows for improper control over dynamically-determined object attributes, leading to potential object injection attacks. This could enable an attacker to manipulate data or execute arbitrary code within applications utilizing affected versions (0.0.0 to 3.0.2). Organizations using these versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-55810
Severity
HIGH
CVSS
8.1
EPSS
0.25%

Original NVD Description

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Plotly.js Graphing allows Object Injection. This issue affects Plotly.js Graphing versions: from 0.0.0 to 3.0.2.

Related CVEs

Other vulnerabilities affecting the same vendor(s)