3.5

CVSS3.1

CVE-2024-13261 - Acquia DAM - Moderately critical - Cross Site Request Forgery, Denial of Service - SA-CONTRIB-2024-โ€ฆ

Cross-Site Request Forgery (CSRF) vulnerability in Drupal Acquia DAM allows Cross Site Request Forgery.This issue affects Acquia DAM: from 0.0.0 before 1.0.13, from 1.1.0 before 1.1.0-beta3.

๐Ÿ“… Published: Jan. 9, 2025, 7:14 p.m. ๐Ÿ”„ Last Modified: Aug. 27, 2025, 8:31 p.m.

8.8

CVSS3.1

CVE-2024-13260 - Migrate queue importer - Moderately critical - Cross Site Request Forgery - SA-CONTRIB-2024-024

Cross-Site Request Forgery (CSRF) vulnerability in Drupal Migrate queue importer allows Cross Site Request Forgery.This issue affects Migrate queue importer: from 0.0.0 before 2.1.1.

๐Ÿ“… Published: Jan. 9, 2025, 7:12 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 3:13 p.m.

7.5

CVSS3.1

CVE-2024-13259 - Image Sizes - Moderately critical - Access bypass - SA-CONTRIB-2024-023

Insertion of Sensitive Information Into Sent Data vulnerability in Drupal Image Sizes allows Forceful Browsing.This issue affects Image Sizes: from 0.0.0 before 3.0.2.

๐Ÿ“… Published: Jan. 9, 2025, 7:11 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 3:12 p.m.

9.8

CVSS3.1

CVE-2024-13258 - Drupal REST & JSON API Authentication - Moderately critical - Access bypass - SA-CONTRIB-2024-022

Incorrect Authorization vulnerability in Drupal Drupal REST & JSON API Authentication allows Forceful Browsing.This issue affects Drupal REST & JSON API Authentication: from 0.0.0 before 2.0.13.

๐Ÿ“… Published: Jan. 9, 2025, 7:05 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 3:11 p.m.

5.3

CVSS3.1

CVE-2024-13257 - Commerce View Receipt - Moderately critical - Access bypass - SA-CONTRIB-2024-021

Incorrect Authorization vulnerability in Drupal Commerce View Receipt allows Forceful Browsing.This issue affects Commerce View Receipt: from 0.0.0 before 1.0.3.

๐Ÿ“… Published: Jan. 9, 2025, 7:04 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 3:09 p.m.

7.5

CVSS3.1

CVE-2024-13256 - Email Contact - Moderately critical - Access bypass - SA-CONTRIB-2024-020

Insufficient Granularity of Access Control vulnerability in Drupal Email Contact allows Forceful Browsing.This issue affects Email Contact: from 0.0.0 before 2.0.4.

๐Ÿ“… Published: Jan. 9, 2025, 7:03 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 3:09 p.m.

7.5

CVSS3.1

CVE-2024-13255 - RESTful Web Services - Critical - Access bypass - SA-CONTRIB-2024-019

Exposure of Sensitive Information Through Data Queries vulnerability in Drupal RESTful Web Services allows Forceful Browsing.This issue affects RESTful Web Services: from 7.X-2.0 before 7.X-2.10.

๐Ÿ“… Published: Jan. 9, 2025, 7 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 4:25 p.m.

7.5

CVSS3.1

CVE-2024-13254 - REST Views - Moderately critical - Information Disclosure - SA-CONTRIB-2024-018

Insertion of Sensitive Information Into Sent Data vulnerability in Drupal REST Views allows Forceful Browsing.This issue affects REST Views: from 0.0.0 before 3.0.1.

๐Ÿ“… Published: Jan. 9, 2025, 6:59 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 4:12 p.m.

9.1

CVSS3.1

CVE-2024-13253 - Advanced PWA - Critical - Access bypass - SA-CONTRIB-2024-017

Incorrect Authorization vulnerability in Drupal Advanced PWA inc Push Notifications allows Forceful Browsing.This issue affects Advanced PWA inc Push Notifications: from 0.0.0 before 1.5.0.

๐Ÿ“… Published: Jan. 9, 2025, 6:59 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 4:08 p.m.

5.4

CVSS3.1

CVE-2024-13252 - TacJS - Moderately critical - Cross Site Scripting - SA-CONTRIB-2024-016

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal TacJS allows Cross-Site Scripting (XSS).This issue affects TacJS: from 0.0.0 before 6.5.0.

๐Ÿ“… Published: Jan. 9, 2025, 6:58 p.m. ๐Ÿ”„ Last Modified: June 4, 2025, 4:11 p.m.
Total resulsts: 345149
Page 6797 of 34,515
ยซ previous page ยป next page
Filters