Drupal Role Delegation是Drupal公司的一个权限管理模块。 Drupal Role Delegation 1.5.0之前版本存在安全漏洞,该漏洞源于权限定义不安全,可能导致权限提升。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Drupal | Role Delegation | 1.3.0 ~ 1.5.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-1554 | Central Authentication System (CAS) Server - Less critical - XML Element Injection - SA-CO | |
| CVE-2026-1553 | Drupal Canvas - Moderately critical - Access bypass - SA-CONTRIB-2026-006 | |
| CVE-2026-0948 | Microsoft Entra ID SSO Login - Critical - Access bypass - SA-CONTRIB-2026-005 | |
| CVE-2026-0947 | AT Internet Piano Analytics - Moderately critical - Cross-site Scripting - SA-CONTRIB-2026 | |
| CVE-2026-0946 | AT Internet SmartTag - Moderately critical - Cross-site Scripting - SA-CONTRIB-2026-003 | |
| CVE-2026-0944 | Group invite - Moderately critical - Access bypass - SA-CONTRIB-2026-001 |
No comments yet