CVE-2026-55809
Drupal Flag attendance field, flag attendance field
Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Flag attendance field allows Object Injection. This issue affects Flag attendance field versions: from 0.0.0 to 1.2.
- CVSS
- 8.1
- EPSS
- 0.31% 23.0% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.11