Improper Handling of Case Sensitivity
CVE-2024-55634
Summary
A vulnerability in Drupal Core allows Privilege Escalation. The vulnerabilities affect drupal/core, drupal/core-recommended, and drupal/drupal packages for versions 8.0.0-alpha2 through 10.2.10, 10.3.0-beta1 through 10.3.8, 10.4.0-beta1, 11.0.0-alpha1 through 11.0.7, and 11.1.0-beta1.
- LOW
- NETWORK
- HIGH
- UNCHANGED
- NONE
- LOW
- HIGH
- NONE
CWE-178 - Improper Handling of Case Sensitivity
The software does not properly account for differences in case sensitivity when accessing or determining the properties of a resource, leading to inconsistent results.
References
Advisory Timeline
- Published