CVE-2024-13261: Acquia DAM - Moderately critical - Cross Site Request Forgery, Denial of Service - SA-CONTRIB-2024-025
Cross-Site Request Forgery (CSRF) vulnerability in Drupal Acquia DAM allows Cross Site Request Forgery.This issue affects Acquia DAM: from 0.0.0 before 1.0.13, from 1.1.0 before 1.1.0-beta3.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13261?
CVE-2024-13261 is a Cross-Site Request Forgery (CSRF) vulnerability which can lead to unauthorized actions being performed on behalf of users.
How do I fix CVE-2024-13261?
To fix CVE-2024-13261, you should upgrade Acquia DAM to version 1.0.13 or later, or to 1.1.0-beta3 or later.
Which versions of Acquia DAM are affected by CVE-2024-13261?
Acquia DAM versions from 0.0.0 before 1.0.13 and from 1.1.0 before 1.1.0-beta3 are affected by CVE-2024-13261.
What is Cross-Site Request Forgery (CSRF) in the context of CVE-2024-13261?
In the context of CVE-2024-13261, CSRF allows attackers to potentially execute unwanted actions on behalf of authenticated users without their consent.
What type of vulnerability is CVE-2024-13261 classified as?
CVE-2024-13261 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.