ZeroHour

Vulnerabilities

8 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2025-48921
Cross-Site Request Forgery (CSRF) vulnerability in Drupal Open Social allows Cross Site Request Forgery.This issue affects Open Social:

Cross-Site Request Forgery (CSRF) vulnerability in Drupal Open Social allows Cross Site Request Forgery.This issue affects Open Social: from 0.0.0 before 12.3.14, from 12.4.0 before 12.4.13.

NVD description · AI analysis pending
8.8<1%
  • getopensocial open social
CVE-2025-31685
+1 in the same advisory: …31686
Missing Authorization vulnerability in Drupal Open Social allows Forceful Browsing.This issue affects Open Social:

Missing Authorization vulnerability in Drupal Open Social allows Forceful Browsing.This issue affects Open Social: from 0.0.0 before 12.3.11, from 12.4.0 before 12.4.10.

NVD description · AI analysis pending
9.1
group max
<1%
  • getopensocial open social
CVE-2024-13241
+4 in the same advisory: …13240 …13273 …13274 …13312
Improper Authorization vulnerability in Drupal Open Social allows Collect Data from Common Resource Locations.This issue affects Open Social:

Improper Authorization vulnerability in Drupal Open Social allows Collect Data from Common Resource Locations.This issue affects Open Social: from 0.0.0 before 12.0.5.

NVD description · AI analysis pending
9.1
group max
<1%
  • getopensocial open social