
drupal/core
Drupal is an open source content management platform powering millions of websites and applications.
Moderate Security Advisories for drupal/core in packagist Clear Filters
Moderate
6 months ago
Drupal Core Potential Cross-Site Scripting (XSS) via Error Messages
packagist
drupal/core
Moderate
6 months ago
Drupal Core Improperly Controlled Modification of Dynamically-Determined Object Attributes Vulnerability
packagist
drupal/core
Moderate
10 months ago
Drupal core Access bypass
packagist
drupal/drupal, drupal/core-recommended, drupal/core
Moderate
10 months ago
Drupal Core Cross-Site Scripting (XSS)
packagist
drupal/drupal, drupal/core-recommended, drupal/core
Moderate
about 1 year ago
Drupal Full Path Disclosure
packagist
drupal/core, drupal/core-recommended, drupal/drupal
Moderate
over 1 year ago
Drupal core Cross-Site Scripting (XSS) vulnerabilities
packagist
drupal/core
Moderate
over 1 year ago
Drupal core uses a vulnerable Third-party library CKEditor
packagist
drupal/core
Moderate
over 1 year ago
Drupal External URL injection through URL aliases leading to Open Redirect
packagist
drupal/core
Moderate
over 3 years ago
Drupal Core Access bypass vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal Core Open Redirect vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal Core Cross-site scripting vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal Cross Site Scripting (XSS) vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal CRLF injection vulnerability in the drupal_set_header function
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal Reflected file download vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal sensitive information disclosure
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal Users without "Administer comments" can set comment visibility on nodes they can edit
packagist
drupal/core, drupal/drupal
Moderate
over 3 years ago
Drupal Unprivileged access to config export
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal Cross-site scripting (XSS) vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal Views can allow unauthorized users to see Statistics information
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal Denial of service via transliterate mechanism
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal sensitive information disclosure
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal cross site scripting vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal external link injection vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal cross-site scripting vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Enhanced Image plugin for CKEditor is vulnerable to Cross-site scripting (XSS)
npm, packagist
ckeditor-dev, drupal/core
Moderate
over 3 years ago
Drupal core access bypass vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal file REST resource does not properly validate
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal core Cross-site Scripting (XSS) vulnerability
packagist
drupal/drupal, drupal/core
Moderate
over 3 years ago
Drupal core Cross-site Scripting (XSS) vulnerability in ckeditor
packagist
drupal/drupal, drupal/core
Moderate
almost 6 years ago
Symfony Cross-site Scripting (XSS) vulnerability
packagist
drupal/core, symfony/symfony, symfony/framework-bundle