CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Dominique Clause 1Search Autocomplete Apr 29, 2026 Nov 30, 2012 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Search Autocomplete module 7.x-2.x before 7.x-2.4 for Drupal does not properly restrict access to the module admin page, which allows remote attackers to disable an autocompletion or change the priority order via uns...Show more |
1Dominique Clause 1Search Autocomplete Apr 29, 2026 Sep 19, 2012 N/A· v4 N/A· v3 6.0 MEDIUM· v2 SQL injection vulnerability in the Search Autocomplete module before 7.x-2.1 for Drupal allows remote authenticated users with the "use search_autocomplete" permission to execute arbitrary SQL commands via unspecified ve...Show more |