Drupal Latest High & Critical Vulnerabilities
Latest High & Critical vulnerabilities published by drupal
Vulnerability Published:
🗓️ Published
- Anytime
Sort By:
🗓️ Published Date
- Descending
File Extension Bypass Vulnerability in Drupal by Acquia
CVE-2024-13311DrupalAllow All File Extensi...7.3HIGHDrupal core - Critical - Cache poisoning - SA-CORE-2023-006
CVE-2023-5256DrupalCore7.5HIGHFile Upload Vulnerability in Drupal Core by Acquia
CVE-2022-25277DrupalCore7.2HIGHAccess Control Flaw in Drupal Image Module
CVE-2022-25275DrupalCore7.5HIGHImproper Input Validation in Drupal Core Forms Affecting Custom Modules
CVE-2022-25273DrupalCore7.5HIGHImproper Input Validation in Drupal Core's Form API Affecting User Data Security
CVE-2022-25271DrupalCore7.5HIGHAccess Control Vulnerability in Drupal Core JSON:API by Drupal
CVE-2020-13677DrupalCore7.5HIGHInformation Disclosure Vulnerability in Drupal Core File Module
CVE-2020-13670DrupalCore7.5HIGHAccess Bypass Vulnerability in Drupal's JSON:API and REST/File Modules
CVE-2020-13675DrupalCore9.8CRITICALCross Site Request Forgery in Drupal Core Form API by Drupal
CVE-2020-13663DrupalDrupal Core8.8HIGHArbitrary PHP Code Execution Vulnerability in Drupal Core by Drupal
CVE-2020-13664DrupalDrupal Core8.8HIGHAccess Bypass Vulnerability in Drupal Core by Drupal
CVE-2020-13665DrupalDrupal Core9.8CRITICALDocker Images with Default Root Password in Drupal by Drupal
CVE-2020-35191DrupalDrupal Docker Images👾🟡9.8CRITICALFile Upload Vulnerability in Drupal Core Affects Multiple Versions
CVE-2020-13671DrupalDrupal Core👾EPSS 67%🦅8.8HIGHDrupal core - Critical - Access bypass - SA-CORE-2019-008
CVE-2019-6342DrupalDrupal Core9.8CRITICALSQL Injection Vulnerability in Drupal 6.x Products by Drupal
CVE-2011-2715DrupalData-module9.8CRITICALInsecure Unserialize Vulnerability in Views Dynamic Fields Module for Drupal
CVE-2019-19826DrupalViews Dynamic Field8.1HIGHAccess Bypass in Drupal 7.x Exposing File Attachments
CVE-2011-2726drupal coredrupal core7.5HIGHDenial of Service Vulnerability in SVG Sanitizer Module for Drupal
CVE-2019-18856DrupalSvg Sanitizer7.5HIGHDrupal core - Highly critical - Remote Code Execution
CVE-2019-6340DrupalDrupal Core👾🟡EPSS 97%🦅8.1HIGHPHAR stream wrapper Arbitrary PHP code execution
CVE-2019-6339DrupalDrupal Core👾🟡EPSS 71%9.8CRITICALthird-party PEAR Archive_Tar library updates
CVE-2019-6338DrupalDrupal Core8HIGHREST API can bypass comment approval - Access Bypass - Moderately Critical
CVE-2017-6924DrupalDrupal Core7.4HIGHEntity Access Vulnerability in Drupal 8 Core Versions
CVE-2017-6925DrupalDrupal9.8CRITICALDrupal core - Highly critical - Remote Code Execution - SA-CORE-2018-004
CVE-2018-7602DrupalCore💰👾🟡EPSS 96%🦅9.8CRITICAL