Medium severity5.3NVD Advisory· Published Jan 9, 2025· Updated Jun 17, 2026
CVE-2024-13303
CVE-2024-13303
Description
Missing Authorization vulnerability in Drupal Download All Files allows Forceful Browsing.This issue affects Download All Files: from 0.0.0 before 2.0.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:download_all_files_project:download_all_files:*:*:*:*:*:drupal:*:*Range: <2.0.2
<2.0.2+ 1 more
- (no CPE)range: <2.0.2
- (no CPE)range: 0.0.0
Patches
Vulnerability mechanics
References
1- www.drupal.org/sa-contrib-2024-069nvdThird Party Advisory
News mentions
0No linked articles in our index yet.