Medium severity4.2NVD Advisory· Published Jul 10, 2026· Updated Jul 16, 2026
CVE-2026-13236
CVE-2026-13236
Description
Missing Authorization vulnerability in Drupal AI Agents allows Forceful Browsing. This issue affects AI Agents versions: from 0.0.0 to 1.1.4, from 1.2.0 to 1.2.5, from 1.3.0 to 1.3.1.
Affected products
2- cpe:2.3:a:artificial_intelligence_project:artificial_intelligence:*:*:*:*:*:drupal:*:*Range: <1.1.4
Patches
Vulnerability mechanics
References
1- www.drupal.org/sa-contrib-2026-056nvdVendor Advisory
News mentions
0No linked articles in our index yet.