πŸ” CVE Alert

CVE-2026-3210

MEDIUM 5.3

Material Icons - Moderately critical - Access bypass - SA-CONTRIB-2026-011

CVSS Score
5.3
EPSS Score
0.0%
EPSS Percentile
11th

Incorrect Authorization vulnerability in Drupal Material Icons allows Forceful Browsing.This issue affects Material Icons: from 0.0.0 before 2.0.4.

CWE CWE-863
Vendor drupal
Product material icons
Ecosystems
Industries
WebMedia
Published Mar 25, 2026
Last Updated Mar 26, 2026
Stay Ahead of the Next One

Get instant alerts for drupal material icons

Be the first to know when new medium vulnerabilities affecting drupal material icons are published β€” delivered to Slack, Telegram or Discord.

Get Free Alerts β†’ Free Β· No credit card Β· 60 sec setup

Affected Versions

Drupal / Material Icons
0.0.0 < 2.0.4

References

NVD β†— CVE.org β†— EPSS Data β†—
drupal.org: https://www.drupal.org/sa-contrib-2026-011

Credits

Jen M (jannakha) Bryan Sharpe (b_sharpe) Jen M (jannakha) Damien McKenna (damienmckenna) Greg Knaddison (greggles) Juraj Nemec (poker10) Ra MÀnd (ram4nd) Jess (xjm)