ZeroHour

CVE-2026-18985

CVSS 3.1
8.1 high
EPSS
<1%p10
Published
()
Modified
Description

Incorrect Authorization vulnerability in Drupal Edit in-place field allows Forceful Browsing. This issue affects Edit in-place field versions: from 0.0.0 to 2.1.1.

Ecosystems
Drupal
Weakness
CWE-863, CWE-285
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.