MEDIUMVulnerability

CVE-2026-73478

Incorrect Authorization vulnerability in Drupal Diff allows Forceful Browsing. This issue affects Diff versions: from 0.0.0 to 2.0.1, from 2.1.0 to 2.1.1.

Properties

severity
MEDIUM
score
5.3
cve_id
CVE-2026-73478
signal_observed_at
2026-09-16T17:34:22+00:00
vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
published_at
2026-09-02T13:18:08.637
last_modified
2026-09-16T16:41:20.313

Related Entities (5)

AFFECTS_PRODUCT (3)

[Product]
[Product]
[Product]

HAS_WEAKNESS (1)

[Weakness]Incorrect Authorization

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph