Medium severity5.3NVD Advisory· Published Jan 9, 2025· Updated Jun 17, 2026
CVE-2024-13312
CVE-2024-13312
Description
Missing Authorization vulnerability in Drupal Open Social allows Forceful Browsing.This issue affects Open Social: from 11.8.0 before 12.3.10, from 12.4.0 before 12.4.9.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:getopensocial:open_social:*:*:*:*:*:drupal:*:*Range: >=11.8.0,<12.3.10
11.8.0+ 1 more
- (no CPE)range: 11.8.0
- (no CPE)range: from 11.8.0 before 12.3.10, from 12.4.0 before 12.4.9
Patches
Vulnerability mechanics
References
1- www.drupal.org/sa-contrib-2024-076nvdVendor Advisory
News mentions
0No linked articles in our index yet.