Loading...
Loading...
The filefield_file_download function in FileField 6.x-3.1, a module for Drupal, does not properly check node-access permissions for Drupal core private files, which allows remote attackers to access unauthorized files via unspecified vectors.
October 26, 2009
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2009-3781
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.