VYPR
Medium severity4.2NVD Advisory· Published Jul 10, 2026· Updated Jul 16, 2026

CVE-2026-13236

CVE-2026-13236

Description

Missing Authorization vulnerability in Drupal AI Agents allows Forceful Browsing. This issue affects AI Agents versions: from 0.0.0 to 1.1.4, from 1.2.0 to 1.2.5, from 1.3.0 to 1.3.1.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.