Cross-site Scripting (XSS) vulnerability in Drupal core's sanitization API fails to properly filter cross-site scripting under certain circumstances. This issue affects: Drupal Core 9.1.x versions before 9.1.7; 9.0.x versions before 9.0.12; 8.9.x versions before 8.9.14; 7.x versions before 7.80.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
drupal drupal |