CVE-2024-13258

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/01/2025
Last modified:
04/06/2025

Description

Incorrect Authorization vulnerability in Drupal Drupal REST & JSON API Authentication allows Forceful Browsing.This issue affects Drupal REST & JSON API Authentication: from 0.0.0 before 2.0.13.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rest_\&_json_api_authentication_project:rest_\&_json_api_authentication:*:*:*:*:*:drupal:*:* 2.0.13 (excluding)


References to Advisories, Solutions, and Tools