Critical severity9.8NVD Advisory· Published Aug 25, 2026· Updated Aug 28, 2026
CVE-2026-16639
CVE-2026-16639
Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Internationalization Single Sign-On allows Authentication Bypass. This issue affects Internationalization Single Sign-On versions: from 0.0.0 to 1.8.0.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 0.0.0 - 1.8.0
Patches
Vulnerability mechanics
References
1News mentions
1- Drupal: Four Security Advisories Released Together on July 22, 2026Vypr Intelligence · Jul 22, 2026