Drupal AI Incorrect Authorization Vulnerability Allowing Resource Injection

Vulnerability

A vulnerability allowing resource injection due to incorrect authorization has been identified in the Drupal AI (Artificial Intelligence) module. This issue affects versions prior to 1.1.11 and 1.2.0 prior to 1.2.12.

Impact

Exploitation of this vulnerability could lead to unauthorized resource injection.

Added: Mar 26, 2026, 9:23 PM
Updated: Mar 26, 2026, 9:23 PM

Vulnerability Rating

Custom Algorithm
spread
2.2
impact
0.6
exploitability
7.6
remediation
0.0
relevance
4.7
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.