Drupal Opigno Group Manager PHP Local File Inclusion Vulnerability

Vulnerability

A static code injection vulnerability allowing PHP local file inclusion has been identified in the Drupal Opigno Group Manager module, affecting versions from 0.0.0 prior to 3.1.1. This vulnerability arises from improper neutralization of directives in statically saved code.

Impact

Exploitation of this vulnerability could lead to unauthorized access to local files on the server, potentially allowing for further exploitation of the application or server.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
8.1
exploitability
5.2
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.