Impact
Based on the description, it is inferred that the vulnerability could allow an attacker to manipulate or view search filter parameters that should be limited, which could lead to unauthorized disclosure of content. The issue represents an improper access control weakness that may expose data beyond the intended audience.
Affected Systems
All Drupal installations that include the Lunr exposed filters component are impacted. No specific version information is provided; therefore, any version using this component should be considered vulnerable until a patch is applied.
Risk and Exploitability
The CVSS score is not available, and the EPSS score is not listed, so the exact exploitation probability is unknown. Based on the description, it is inferred that the attack vector involves web requests that supply filter parameters, indicating a potential remote attack vector. The issue has not been listed as a known exploited vulnerability in CISA's KEV catalog, but the lack of mitigation may allow data exposure if an attacker crafts appropriate requests.
OpenCVE Enrichment