Back

MEDIUM

Entity Share - Moderately critical - Access bypass, Information Disclosure - SA-CONTRIB-2025-123

Published Jan 28, 2026

Description

Incorrect Authorization vulnerability in Drupal Entity Share allows Forceful Browsing.This issue affects Entity Share: from 0.0.0 before 3.13.0.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner drupal
Published Jan 28, 2026
Updated Jan 29, 2026
Reserved Dec 3, 2025
CISA Vulnrichment
Updated Jan 29, 2026
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner drupal
Published Jan 28, 2026
Updated Jan 29, 2026
Exploited since n/a
EUVD-2025-206436