VYPR
Medium severity4.8NVD Advisory· Published Jul 10, 2026· Updated Jul 16, 2026

CVE-2026-13237

CVE-2026-13237

Description

Incorrect Authorization vulnerability in Drupal AI Agents allows Forceful Browsing. This issue affects AI Agents versions: from 0.0.0 to 1.1.4, from 1.2.0 to 1.2.5, from 1.3.0 to 1.3.1.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.