First published: Thu Jan 09 2025(Updated: )
Incorrect Authorization vulnerability in Drupal Responsive and off-canvas menu allows Forceful Browsing.This issue affects Responsive and off-canvas menu: from 0.0.0 before 4.4.4.
Credit: mlhess@drupal.org
Affected Software | Affected Version | How to fix |
---|---|---|
Drupal | >0.0.0<4.4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-13266 is categorized as a moderate risk due to incorrect authorization allowing forceful browsing.
To fix CVE-2024-13266, update the Drupal Responsive and off-canvas menu to version 4.4.4 or later.
CVE-2024-13266 affects Drupal Responsive and off-canvas menu versions from 0.0.0 to before 4.4.4.
CVE-2024-13266 is an Incorrect Authorization vulnerability that may lead to unauthorized access.
CVE-2024-13266 is not classified as a zero-day vulnerability since it was publicly disclosed after being identified.