Insufficient Granularity of Access Control vulnerability in Drupal Paragraphs table allows Content Spoofing.This issue affects Paragraphs table: from 0.0.0 before 1.23.0, from 2.0.0 before 2.0.2.

Subscriptions

Vendors Products
Paragraphs Table Project Subscribe
Paragraphs Table Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-51486 Insufficient Granularity of Access Control vulnerability in Drupal Paragraphs table allows Content Spoofing.This issue affects Paragraphs table: from 0.0.0 before 1.23.0, from 2.0.0 before 2.0.2.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
History

Wed, 27 Aug 2025 19:30:00 +0000

Type Values Removed Values Added
First Time appeared Paragraphs Table Project
Paragraphs Table Project paragraphs Table
CPEs cpe:2.3:a:paragraphs_table_project:paragraphs_table:*:*:*:*:*:drupal:*:*
Vendors & Products Paragraphs Table Project
Paragraphs Table Project paragraphs Table

Tue, 14 Jan 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 09 Jan 2025 19:30:00 +0000

Type Values Removed Values Added
Description Insufficient Granularity of Access Control vulnerability in Drupal Paragraphs table allows Content Spoofing.This issue affects Paragraphs table: from 0.0.0 before 1.23.0, from 2.0.0 before 2.0.2.
Title Paragraphs table - Critical - Access bypass, Information Disclosure - SA-CONTRIB-2024-036
Weaknesses CWE-1220
References

cve-icon MITRE

Status: PUBLISHED

Assigner: drupal

Published:

Updated: 2025-01-14T17:06:04.073Z

Reserved: 2025-01-09T18:28:07.546Z

Link: CVE-2024-13272

cve-icon Vulnrichment

Updated: 2025-01-14T17:05:58.767Z

cve-icon NVD

Status : Analyzed

Published: 2025-01-09T20:15:36.027

Modified: 2025-08-27T19:23:46.117

Link: CVE-2024-13272

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses