Cross-Site Scripting Vulnerability in Drupal COOKiES Consent Management
CVE-2025-47703
What is CVE-2025-47703?
A Cross-Site Scripting (XSS) vulnerability exists in the COOKiES Consent Management module for Drupal, specifically affecting versions prior to 1.2.14. This flaw arises from improper validation of user input during web page generation, allowing attackers to inject malicious scripts. Such exploitation can lead to unauthorized actions taking place on behalf of users, potentially compromising sensitive data and user interactions. It is imperative for site administrators using the affected versions to implement updates promptly to mitigate these vulnerabilities and safeguard against potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
COOKiES Consent Management 0.0.0 < 1.2.14
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
