Known vulnerabilities in Drupal Drupal

Vendor: Drupal
Website: https://www.drupal.org
Total Security Bulletins: 172

Security bulletins (172)

Secuity bulletin Severity Status Published
SB2025111349: Multiple vulnerabilities in Drupal Medium
Patched
13.11.2025
SB2025032012: Cross-site scripting in Drupal Low
Patched
20.03.2025
SB2025022002: Multiple vulnerabilities in Drupal Medium
Patched
20.02.2025
SB2024112110: Multiple vulnerabilities in Drupal Low
Patched
21.11.2024
SB2024112109: Multiple vulnerabilities in Drupal Low
Patched
21.11.2024
SB2024101725: Improper error handling in Drupal Medium
Patched
17.10.2024
SB2024011787: Denial of service in Drupal Comment module Medium
Patched
17.01.2024
SB2024011623: Denial of service in Drupal Medium
Patched
16.01.2024
SB2023092061: Information disclosure in Drupal JSON:API module High
Patched
20.09.2023
SB2023041947: Security restrictions bypass in Drupal Medium
Patched
19.04.2023
SB2023031541: Multiple vulnerabilities in Drupal Medium
Patched
15.03.2023
SB20230118103: Improper access control in Drupal Media Library Low
Patched
18.01.2023
SB2022092840: Path traversal in Drupal Twig Medium
Patched
28.09.2022
SB2022072109: Multiple vulnerabilities in Drupal Medium
Patched
21.07.2022
SB2022061019: Drupal update for Guzzle Low
Patched
10.06.2022
SB2022052525: Drupal update for Guzzle Medium
Patched
25.05.2022
SB2022042015: Multiple vulnerabilities in Drupal Medium
Patched
20.04.2022
SB2022032133: Drupal update for Guzzle PSR-7 Medium
Patched
21.03.2022
SB2022031703: Drupal update for CKEditor library Low
Patched
17.03.2022
SB2022021627: Multiple vulnerabilities in Drupal Medium
Patched
16.02.2022


Showing elements 1 - 20 out of 172