CVE-2026-58589

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/07/2026
Last modified:
14/07/2026

Description

Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing. This issue affects FlowDrop versions: from 0.0.0 to 1.6.0.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:flowdrop_project:flowdrop:*:*:*:*:*:drupal:*:* 1.6.0 (including)


References to Advisories, Solutions, and Tools