Sensitive Information Exposure Vulnerability in DXPR Builder by Drupal
CVE-2026-81162

Currently unrated

What is CVE-2026-81162?

A vulnerability exists in the DXPR Builder, an AI-based editing tool for Drupal, where sensitive information can inadvertently be included in sent data, potentially allowing attackers to exploit forceful browsing. This impacts versions from 0.0.0 up to 2.8.1, highlighting the need for vigilance and updated security measures to protect against unauthorized access to sensitive information.

Affected Version(s)

DXPR Builder: The Best Editing (AI) Experience for Drupal 0.0.0 < 2.8.1

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

jurriaanroelofs
jurriaanroelofs
Greg Knaddison (greggles)
Juraj Nemec (poker10)
Jess (xjm)
.