CVE-2026-1917

Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Login Disable allows Functionality Bypass.This issue affects Login Disable: from 0.0.0 before 2.1.3.
References
Link Resource
https://www.drupal.org/sa-contrib-2026-008 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:budda:login_disable:*:*:*:*:*:drupal:*:*

History

02 Apr 2026, 20:37

Type Values Removed Values Added
First Time Budda
Budda login Disable
CPE cpe:2.3:a:budda:login_disable:*:*:*:*:*:drupal:*:*
References () https://www.drupal.org/sa-contrib-2026-008 - () https://www.drupal.org/sa-contrib-2026-008 - Vendor Advisory
Summary
  • (es) Vulnerabilidad de omisión de autenticación Usando una Ruta o Canal Alternativo en Drupal Login Disable permite la Omisión de Funcionalidad. Este problema afecta a Login Disable: desde 0.0.0 antes de 2.1.3.

26 Mar 2026, 15:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.3
v2 : unknown
v3 : 4.3

25 Mar 2026, 20:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.3

25 Mar 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-25 16:16

Updated : 2026-04-02 20:37


NVD link : CVE-2026-1917

Mitre link : CVE-2026-1917

CVE.ORG link : CVE-2026-1917


JSON object : View

Products Affected

budda

  • login_disable
CWE
CWE-288

Authentication Bypass Using an Alternate Path or Channel