CyberRota Analysis
AI-GeneratedThe vulnerability in Drupal FlowDrop allows for forceful browsing due to missing authorization checks, potentially enabling unauthorized access to restricted resources. This affects all versions from 0.0.0 to 1.6.0, and organizations using these versions should prioritize patching to mitigate the risk of unauthorized data exposure.
CVE
CVE-2026-58590
Severity
MEDIUM
CVSS
5.4
EPSS
0.14%
Original NVD Description
Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing. This issue affects FlowDrop versions: from 0.0.0 to 1.6.0.
Related CVEs
Other vulnerabilities affecting the same vendor(s)