Critical severity9.8NVD Advisory· Published Jan 9, 2025· Updated Jun 17, 2026
CVE-2024-13258
CVE-2024-13258
Description
Incorrect Authorization vulnerability in Drupal Drupal REST & JSON API Authentication allows Forceful Browsing.This issue affects Drupal REST & JSON API Authentication: from 0.0.0 before 2.0.13.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<2.0.13+ 1 more
- (no CPE)range: <2.0.13
- (no CPE)range: 0.0.0
- cpe:2.3:a:rest_\&_json_api_authentication_project:rest_\&_json_api_authentication:*:*:*:*:*:drupal:*:*Range: <2.0.13
Patches
Vulnerability mechanics
References
1- www.drupal.org/sa-contrib-2024-022nvdVendor Advisory
News mentions
0No linked articles in our index yet.