Skip to main content

Improper Handling of Case Sensitivity

CVE-2024-55634

Severity Medium
Score 6.9/10

Summary

A vulnerability in Drupal Core allows Privilege Escalation. The vulnerabilities affect drupal/core, drupal/core-recommended, and drupal/drupal packages for versions 8.0.0-alpha2 through 10.2.10, 10.3.0-beta1 through 10.3.8, 10.4.0-beta1, 11.0.0-alpha1 through 11.0.7, and 11.1.0-beta1.

  • LOW
  • NETWORK
  • HIGH
  • UNCHANGED
  • NONE
  • LOW
  • HIGH
  • NONE

CWE-178 - Improper Handling of Case Sensitivity

The software does not properly account for differences in case sensitivity when accessing or determining the properties of a resource, leading to inconsistent results.

Advisory Timeline

  • Published