216.73.217.22

CVE-2025-14840

· Published 28/01/2026 20:16 · Modified 29/01/2026 17:16

Labels: CVE-2025-14840 2026-01-28CVE-2025-14840CWE-754[email protected]

Essential information

Published
28/01/2026 20:16
Modified
29/01/2026 17:16
Author
Creator
CVSS
7.5 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CVSS metrics

Description

Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal HTTP Client Manager allows Forceful Browsing.This issue affects HTTP Client Manager: from 0.0.0 before 9.3.13, from 10.0.0 before 10.0.2, from 11.0.0 before 11.0.1.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
drupal / http client manager cpe:2.3:a:drupal:http_client_manager:<9.3.13:*:*:*:*:*:*:*
drupal / http client manager cpe:2.3:a:drupal:http_client_manager:<10.0.2:*:*:*:*:*:*:*
drupal / http client manager cpe:2.3:a:drupal:http_client_manager:<11.0.1:*:*:*:*:*:*:*

References