Vulnerability DRUPAL-CONTRIB-2026-202

Unknown
UNKNOWN RISK
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
11 hours ago
October 07, 2026 at 04:26 PM UTC
No summary available

Details

This module provides a new UI experience for node editing using the Gutenberg Editor library.

The module does not sufficiently check entity access in several editor endpoints.

This vulnerability is mitigated by the fact that an attacker must have a role with the “use gutenberg” permission.

Impacted packages

Timeline

Published
11 hours ago
October 07, 2026 at 04:26 PM UTC
Last Modified
7 hours ago
October 07, 2026 at 08:15 PM UTC