wid-sec-w-2026-2002
·
Published 2026-06-17
·
View on BSI CERT-Bund ↗
Drupal Core: Multiple Vulnerabilities
CVSS N/A
NONE
Risk Summary
Ein Angreifer kann mehrere Schwachstellen in Drupal Core ausnutzen, um beliebigen Programmcode auszuführen, Cross-Site-Scripting-Angriffe durchzuführen, um Daten zu manipulieren, oder um Nutzer auf bösartige Websites umzuleiten.
Affected Vendors
Open Source
Affected Products (12)
Open Source
·
Drupal
Core <8.5.11
Open Source
·
Drupal
Core 8.5.11
Open Source
·
Drupal
Core <8.6.10
Open Source
·
Drupal
Core 8.6.10
Open Source
·
Drupal
Core <11.3.12
Open Source
·
Drupal
Core 11.3.12
Open Source
·
Drupal
Core <11.2.14
Open Source
·
Drupal
Core 11.2.14
Open Source
·
Drupal
Core <10.6.11
Open Source
·
Drupal
Core 10.6.11
Open Source
·
Drupal
Core <10.5.12
Open Source
·
Drupal
Core 10.5.12
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more