Vulnerabilidades en Drupal

309 resultados
CVE-2020-13673The Entity Embed module provides a filter to allow embedding entities in content fields. In certain circumstances, the filter could allow anEPSS 0.3%CVE-2025-3735MEDIUMPanelizer (obsolete) - Critical - Unsupported - SA-CONTRIB-2025-036EPSS 0.3%CVE-2025-8361HIGHConfig Pages - Moderately critical - Access bypass - SA-CONTRIB-2025-093EPSS 0.3%CVE-2024-13263MEDIUMOpigno group manager - Critical - Arbitrary PHP code execution - SA-CONTRIB-2024-027EPSS 0.3%CVE-2024-13308LOWBrowser Back Button - Moderately critical - Cross site scripting - SA-CONTRIB-2024-072EPSS 0.2%CVE-2026-3531MEDIUMOpenID Connect / OAuth client - Moderately critical - Access bypass - SA-CONTRIB-2026-026EPSS 0.2%CVE-2024-13309MEDIUMLogin Disable - Critical - Access bypass - SA-CONTRIB-2024-073EPSS 0.2%CVE-2025-3129MEDIUMAccess code - Moderately critical - Access bypass - SA-CONTRIB-2025-028EPSS 0.2%CVE-2026-3527MEDIUMAJAX Dashboard - Critical - Access bypass - SA-CONTRIB-2026-022EPSS 0.2%CVE-2026-3529MEDIUMGoogle Analytics GA4 - Moderately critical - Cross-site Scripting - SA-CONTRIB-2026-024EPSS 0.2%CVE-2026-3528MEDIUMCalculation Fields - Moderately critical - Cross-site Scripting - SA-CONTRIB-2026-023EPSS 0.2%CVE-2025-3904HIGHSportsleague - Critical - Unsupported - SA-CONTRIB-2025-045EPSS 0.2%CVE-2025-13083LOWDrupal core - Moderately critical - Information disclosure - SA-CORE-2025-008EPSS 0.2%CVE-2026-6365MEDIUMDrupal core - Critical - Cross-site scripting - SA-CORE-2026-001EPSS 0.2%CVE-2025-47705MEDIUMIFrame Remove Filter - Moderately critical - Cross site scripting - SA-CONTRIB-2025-051EPSS 0.2%CVE-2024-13301MEDIUMOAuth & OpenID Connect Single Sign On – SSO (OAuth/OIDC Client) - Critical - Cross Site Scripting - SA-CONTRIB-2024-067EPSS 0.2%CVE-2026-8492LOWTranslate Drupal with GTranslate - Less critical - DOM clobbering / link manipulation - SA-CONTRIB-2026-035EPSS 0.2%CVE-2025-47706MEDIUMEnterprise MFA - TFA for Drupal - Moderately critical - Access bypass - SA-CONTRIB-2025-052EPSS 0.2%CVE-2025-8675MEDIUMAI SEO Link Advisor - Less critical - Server-side Request Forgery - SA-CONTRIB-2025-095EPSS 0.2%CVE-2025-13980MEDIUMCKEditor 5 Premium Features - Moderately critical - Access bypass - SA-CONTRIB-2025-118EPSS 0.2%