Known vulnerabilities in Central Authentication System (CAS) Server
Vendor:
Jaap Jansma
Software CPE:
cpe:2.3:a:jaapjansma:central_authentication_system_cas_server:*:*:*:*:*:*:*:*
Website:
https://www.drupal.org/u/jaapjansma
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
6.1
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU148902 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2026-87937 |
CWE-601 | Medium | 2.0.4, 2.1.3 | 10.09.2026 |
SB2026091036 |
||
| #VU122111 - XML Injection CVE-2026-1554 |
CWE-91 | Medium | 2.0.3, 2.1.2 | 29.01.2026 |
SB2026012904 |