CVE-2024-13248 |
Description: Incorrect Privilege Assignment vulnerability in Drupal Private content allows Target Influence via Framing.This issue affects Private content: from 0.0.0 before 2.1.0.
EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13247 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Coffee allows Cross-Site Scripting (XSS).This issue affects Coffee: from 0.0.0 before 1.4.0.
EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13246 |
Description: Improper Ownership Management vulnerability in Drupal Node Access Rebuild Progressive allows Target Influence via Framing.This issue affects Node Access Rebuild Progressive: from 0.0.0 before 2.0.2.
EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13245 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal CKEditor 4 LTS - WYSIWYG HTML editor allows Cross-Site Scripting (XSS).This issue affects CKEditor 4 LTS - WYSIWYG HTML editor: from 1.0.0 before 1.0.1.
EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13244 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Drupal Migrate Tools allows Cross Site Request Forgery.This issue affects Migrate Tools: from 0.0.0 before 6.0.3.
EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13243 |
Description: Missing Authorization vulnerability in Drupal Entity Delete Log allows Forceful Browsing.This issue affects Entity Delete Log: from 0.0.0 before 1.1.1.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13242 |
Description: Exposed Dangerous Method or Function vulnerability in Drupal Swift Mailer allows Resource Location Spoofing.This issue affects Swift Mailer: *.*.
CVSS: CRITICAL (9.1) EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13241 |
Description: Improper Authorization vulnerability in Drupal Open Social allows Collect Data from Common Resource Locations.This issue affects Open Social: from 0.0.0 before 12.0.5.
CVSS: CRITICAL (9.1) EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13240 |
Description: Improper Access Control vulnerability in Drupal Open Social allows Collect Data from Common Resource Locations.This issue affects Open Social: from 0.0.0 before 12.05.
CVSS: HIGH (7.5) EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|
CVE-2024-13239 |
Description: Weak Authentication vulnerability in Drupal Two-factor Authentication (TFA) allows Authentication Abuse.This issue affects Two-factor Authentication (TFA): from 0.0.0 before 1.5.0.
EPSS Score: 0.04%
January 10th, 2025 (6 months ago)
|