AI Agents - Moderately critical - Information disclosure, Access bypass - SA-CONTRIB-2026-057

https://www.drupal.org/sa-contrib-2026-057

AI Agents - Moderately critical - Information disclosure, Access bypass - SA-CONTRIB-2026-057

This module provides the entity type and runtime for Drupal AI Agents, enabling agents to use tools. Under certain circumstances, the agent inherits deterministic parameters when invoking the same tool in one request, which can lead to information disclosure.

Drupal.org