Loading...
Loading...
The _json_decode function in plugins/context_reaction_block.inc in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal, when using a version of PHP that does not support the json_decode function, allows remote attackers to execute arbitrary PHP code via unspecified vectors related to Ajax operations, possibly involving eval injection.
December 7, 2013
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-4446
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.