CyberRota Analysis
AI-GeneratedThe vulnerability in the Disable Login Page module for Drupal allows unauthorized users to potentially bypass authentication mechanisms, compromising the security of the application. Organizations utilizing this module should prioritize remediation to prevent unauthorized access and protect sensitive data, especially those managing user authentication processes.
CVE
CVE-2026-18260
Severity
MEDIUM
CVSS
5.7
EPSS
0.22%
Original NVD Description
Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Disable Login Page allows Brute Force. This issue affects Disable Login Page versions: from 0.0.0 to 1.1.4.