High severity7.5NVD Advisory· Published Jan 9, 2025· Updated Jun 17, 2026
CVE-2024-13276
CVE-2024-13276
Description
Insertion of Sensitive Information Into Sent Data vulnerability in Drupal File Entity (fieldable files) allows Forceful Browsing.This issue affects File Entity (fieldable files): from 7.X-* before 7.X-2.39.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:file_entity_project:file_entity:*:*:*:*:*:drupal:*:*Range: <7.x-2.39
- Range: 7.X-* before 7.X-2.39
- Range: 7.x-*
Patches
Vulnerability mechanics
References
1- www.drupal.org/sa-contrib-2024-040nvdThird Party Advisory
News mentions
0No linked articles in our index yet.