Unrated severityNVD Advisory· Published Jan 28, 2026· Updated Jan 29, 2026
HTTP Client Manager - Less critical - Information disclosure - SA-CONTRIB-2025-126
CVE-2025-14840
Description
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal HTTP Client Manager allows Forceful Browsing.This issue affects HTTP Client Manager: from 0.0.0 before 9.3.13, from 10.0.0 before 10.0.2, from 11.0.0 before 11.0.1.
Affected products
1- Range: >=0.0.0,<9.3.13, >=10.0.0,<10.0.2, >=11.0.0,<11.0.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.