PT-2026-84889 · Packagist · Drupal/Ai Translate

CVE-2026-84913

·

Published

2026-09-02

·

Updated

2026-09-02

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
This module enables you to automatically translate entities.
The module doesn't sufficiently check access on the entity to be translated, related fields or referenced entities when performing an AI translation on an entity or when those fields / entities have a different access level than the parent entity. This permission bypass is only applicable to the translate operation - no unwarranted read or update access is granted to the affected entities
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-84913
DRUPAL-CONTRIB-2026-121

Affected Products

Drupal/Ai Translate