CVE-2025-14840

Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal HTTP Client Manager allows Forceful Browsing.This issue affects HTTP Client Manager: from 0.0.0 before 9.3.13, from 10.0.0 before 10.0.2, from 11.0.0 before 11.0.1.
References
Link Resource
https://www.drupal.org/sa-contrib-2025-126 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:bmeme:http_client_manager:*:*:*:*:*:drupal:*:*
cpe:2.3:a:bmeme:http_client_manager:*:*:*:*:*:drupal:*:*
cpe:2.3:a:bmeme:http_client_manager:11.0.0:*:*:*:*:drupal:*:*

History

17 Jun 2026, 08:36

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de comprobación incorrecta de condiciones inusuales o excepcionales en Drupal Gestor de Clientes HTTP permite la navegación forzada. Este problema afecta a Gestor de Clientes HTTP: desde 0.0.0 anterior a 9.3.13, desde 10.0.0 anterior a 10.0.2, desde 11.0.0 anterior a 11.0.1.

06 Feb 2026, 18:48

Type Values Removed Values Added
CPE cpe:2.3:a:bmeme:http_client_manager:*:*:*:*:*:drupal:*:*
cpe:2.3:a:bmeme:http_client_manager:11.0.0:*:*:*:*:drupal:*:*
References () https://www.drupal.org/sa-contrib-2025-126 - () https://www.drupal.org/sa-contrib-2025-126 - Vendor Advisory
First Time Bmeme http Client Manager
Bmeme

29 Jan 2026, 17:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

28 Jan 2026, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-28 20:16

Updated : 2026-06-17 08:36


NVD link : CVE-2025-14840

Mitre link : CVE-2025-14840

CVE.ORG link : CVE-2025-14840


JSON object : View

Products Affected

bmeme

  • http_client_manager
CWE
CWE-754

Improper Check for Unusual or Exceptional Conditions