CVE-2026-4933 | Unpublished Node Permissions up to 1.6.x on Drupal authorization (sa-contrib-2026-029)
A vulnerability was found in Unpublished Node Permissions up to 1.6.x on Drupal and classified as critical. Affected is an unknown function. Executing a manipulation can lead to incorrect authorization.
This vulnerability is registered as CVE-2026-4933. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.