← Back to home
wid-sec-w-2026-0781  ·  Published 2026-03-18  ·  View on BSI CERT-Bund ↗

Drupal Automated Logout Extension: Vulnerability allows Manipulation from Dateien

CVSS 4.3 MEDIUM

Risk Summary

Ein entfernter, anonymer Angreifer kann eine Schwachstelle in der Automated Logout Extension von Drupal ausnutzen, um Dateien zu manipulieren.

CVEs (1)

Affected Vendors

Open Source

Affected Products (4)

Open Source · Drupal Automated Logout <1.7.0
Open Source · Drupal Automated Logout 1.7.0
Open Source · Drupal Automated Logout <2.0.2
Open Source · Drupal Automated Logout 2.0.2

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more