这段漏洞描述的中文翻译如下: Drupal Digital Signage Framework 存在“缺少授权(Missing Authorization)”漏洞,可能导致“强制浏览(Forceful Browsing)”问题。受影响的版本为:0.0.0 至 2.6.1。 --- 翻译说明: Missing Authorization:通常翻译为“缺少授权”或“认证缺失”。在安全漏洞语境下,指系统在未验证用户身份或权限的情况下允许访问资源。 Forceful Browsing:这是一个比较专业的术语,指的是攻击者可
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Drupal | Digital Signage Framework | 0.0.0 ~ 2.6.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76759 | Screenshot - Critical - Unsupported - SA-CONTRIB-2026-102 | |
| CVE-2026-81160 | Slick Carousel - Moderately critical - Cross Site Scripting - SA-CONTRIB-2026-117 | |
| CVE-2026-81201 | Monster Menus - Moderately critical - Cross-site Scripting - SA-CONTRIB-2026-116 | |
| CVE-2026-81205 | LDAP / Active Directory Integration - Moderately critical - Information Disclosure - SA-CO | |
| CVE-2026-81164 | Entity PDF - Moderately critical - Access bypass - SA-CONTRIB-2026-114 | |
| CVE-2026-81158 | Entity API - Moderately critical - Information disclosure - SA-CONTRIB-2026-113 | |
| CVE-2026-81162 | DXPR Builder: The AI Visual Page Builder for Drupal - Moderately critical - Information D | |
| CVE-2026-81269 | Data field - Moderately critical - Information disclosure - SA-CONTRIB-2026-108 | |
| CVE-2026-81161 | Content Moderation Notifications - Moderately critical - Access bypass - SA-CONTRIB-2026-1 | |
| CVE-2026-81159 | Commerce CyberSource - Moderately critical - Insufficient input validation - SA-CONTRIB-20 | |
| CVE-2026-81168 | CAPTCHA Protected Page - Moderately critical - Cookie Forgery - SA-CONTRIB-2026-105 | |
| CVE-2026-81165 | Blazy - Less critical - Access bypass - SA-CONTRIB-2026-104 | |
| CVE-2026-81167 | Address Suggestion - Moderately critical - Cross-site scripting - SA-CONTRIB-2026-103 | |
| CVE-2026-16647 | Disable Login Page - Moderately critical - Access bypass - SA-CONTRIB-2026-111 | |
| CVE-2026-76782 | Screenshot - Critical - Unsupported - SA-CONTRIB-2026-102 | |
| CVE-2026-76758 | Link content parser - Critical - Unsupported - SA-CONTRIB-2026-101 | |
| CVE-2026-76755 | Gammu SMS Daemon - Critical - Unsupported - SA-CONTRIB-2026-100 | |
| CVE-2026-76756 | Gammu SMS Daemon - Critical - Unsupported - SA-CONTRIB-2026-100 | |
| CVE-2026-76757 | Gammu SMS Daemon - Critical - Unsupported - SA-CONTRIB-2026-100 | |
| CVE-2026-73477 | Quick Tabs - Moderately critical - Access bypass - SA-CONTRIB-2026-099 |
Showing top 20 of 26 CVEs. View all on vendor page → →
No comments yet