CVE-2025-14840

Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal HTTP Client Manager allows Forceful Browsing.This issue affects HTTP Client Manager: from 0.0.0 before 9.3.13, from 10.0.0 before 10.0.2, from 11.0.0 before 11.0.1.
References
Link Resource
https://www.drupal.org/sa-contrib-2025-126 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:bmeme:http_client_manager:*:*:*:*:*:drupal:*:*
cpe:2.3:a:bmeme:http_client_manager:*:*:*:*:*:drupal:*:*
cpe:2.3:a:bmeme:http_client_manager:11.0.0:*:*:*:*:drupal:*:*

History

06 Feb 2026, 18:48

Type Values Removed Values Added
CPE cpe:2.3:a:bmeme:http_client_manager:*:*:*:*:*:drupal:*:*
cpe:2.3:a:bmeme:http_client_manager:11.0.0:*:*:*:*:drupal:*:*
References () https://www.drupal.org/sa-contrib-2025-126 - () https://www.drupal.org/sa-contrib-2025-126 - Vendor Advisory
First Time Bmeme http Client Manager
Bmeme

29 Jan 2026, 17:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

28 Jan 2026, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-28 20:16

Updated : 2026-02-06 18:48


NVD link : CVE-2025-14840

Mitre link : CVE-2025-14840

CVE.ORG link : CVE-2025-14840


JSON object : View

Products Affected

bmeme

  • http_client_manager
CWE
CWE-754

Improper Check for Unusual or Exceptional Conditions