Unrated severityNVD Advisory· Published Feb 4, 2026· Updated Feb 4, 2026
Microsoft Entra ID SSO Login - Critical - Access bypass - SA-CONTRIB-2026-005
CVE-2026-0948
Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Microsoft Entra ID SSO Login allows Privilege Escalation.This issue affects Microsoft Entra ID SSO Login: from 0.0.0 before 1.0.4.
Affected products
2- Range: <1.0.4
- Drupal/Microsoft Entra ID SSO Loginv5Range: 0.0.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.