← Back to CVE search

CVE-2026-3214

Drupal CAPTCHA

Description

Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal CAPTCHA allows Functionality Bypass.This issue affects CAPTCHA: from 0.0.0 before 1.17.0, from 2.0.0 before 2.0.10.

CVSS 6.5EPSS 0.268%Risk 0.67
View source
Published
2026-03-25 16:16:22
Affected versions
<1.17.0,>=2.0.0,<2.0.10
Type
Core software
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N