ZeroHour

CVE-2026-13233

CVSS 3.1
3.3 low
EPSS
<1%p11
Published
()
Modified
Description

Server-Side Request Forgery (SSRF) vulnerability in Drupal OpenAI Provider allows Server Side Request Forgery. This issue affects OpenAI Provider versions: from 0.0.0 to 1.1.1, from 1.2.0 to 1.2.2.

Vendors
openai provider project
Products
openai provider
Ecosystems
Drupal
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.