Back

CRITICAL

Date iCal - Critical - Information disclosure - SA-CONTRIB-2026-037

Published May 19, 2026

Description

Missing Authorization vulnerability in Drupal Date iCal allows Forceful Browsing.

This issue affects Date iCal: from 0.0.0 before 4.0.15.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner drupal
Published May 19, 2026
Updated May 20, 2026
Reserved May 13, 2026

CISA Vulnrichment

Updated May 20, 2026

NVD

Status Analyzed
Modified Jul 23, 2026

Red Hat

No data

ENISA EUVD

Assigner drupal
Published May 19, 2026
Updated May 20, 2026

GitHub

No data