SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-73476

MEDIUM · CVSS 5.4 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Drupal's External Authentication component is vulnerable due to improper handling of case sensitivity, which could allow an attacker to escalate privileges. This issue affects all versions from 0.0.0 to 2.0.13, and organizations using these versions should prioritize remediation to prevent unauthorized access.

CVE
CVE-2026-73476
Severity
MEDIUM
CVSS
5.4
EPSS
0.18%

Original NVD Description

Improper Handling of Case Sensitivity vulnerability in Drupal External Authentication allows Privilege Escalation. This issue affects External Authentication versions: from 0.0.0 to 2.0.13.