{ "id": "CVE-2024-45440", "sourceIdentifier": "cve@mitre.org", "published": "2024-08-29T11:15:27.083", "lastModified": "2024-08-29T13:25:27.537", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "core/authorize.php in Drupal 11.x-dev allows Full Path Disclosure (even when error logging is None) if the value of hash_salt is file_get_contents of a file that does not exist." } ], "metrics": {}, "references": [ { "url": "https://www.drupal.org/project/drupal/issues/3457781", "source": "cve@mitre.org" } ] }