CVE-2024-13311: Allow All File Extensions For File Fields Project Allow All File Extensions For File Fields
High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Vulnerability in Drupal Allow All File Extensions for file fields.This issue affects Allow All File Extensions for file fields: *.*.
Affected products
- Allow All File Extensions For File Fields Project Allow All File Extensions For File Fields: any version
Published 2025-01-09. Last modified 2026-06-17.