Loading...
Loading...
The Storm module 6.x before 6.x-1.25 for Drupal does not enforce privilege requirements for storminvoiceitem nodes, which allows remote attackers to read node titles via unspecified vectors.
December 31, 2009
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2009-4515
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.