Security News

Cybersecurity news aggregator

🔓
CRITICAL Vulnerabilities BSI Germany

[NEU] [kritisch] Drupal Core: Mehrere Schwachstellen

Multiple critical vulnerabilities in Drupal Core, including remote code execution, Cross-Site Scripting, and open redirects, can be exploited by a remote attacker. The CVSS Base Score is 9.8. Affected versions are Drupal Core prior to 8.5.11, prior to 8.6.10, prior to 11.3.12, prior to 11.2.14, prior to 10.6.11, and prior to 10.5.12.
Read Full Article →

[WID-SEC-2026-2002] Drupal Core: Mehrere Schwachstellen CVSS Base Score 9.8 (kritisch) CVSS Temporal Score 9.4 (kritisch) Remoteangriff ja Datum 17.06.2026 Stand 18.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Windows Produktbeschreibung Drupal ist ein freies Content-Management-System, basierend auf der Scriptsprache PHP und einer SQL-Datenbank. Über zahlreiche Extensions kann der Funktionsumfang der Core-Installation individuell erweitert werden. Produkte 17.06.2026 Open Source Drupal Core <8.5.11 Open Source Drupal Core <8.6.10 Open Source Drupal Core <11.3.12 Open Source Drupal Core <11.2.14 Open Source Drupal Core <10.6.11 Open Source Drupal Core <10.5.12 Angriff Angriff Ein Angreifer kann mehrere Schwachstellen in Drupal Core ausnutzen, um beliebigen Programmcode auszuführen, Cross-Site-Scripting-Angriffe durchzuführen, um Daten zu manipulieren, oder um Nutzer auf bösartige Websites umzuleiten. CVE Informationen Versionshistorie Feedback zum Advisory geben

Share this article