Drupal Updates
2542Warning Date
Severity Level
Warning Number
Target Sector
17 September, 2020
● High
2020-1793
All
Description:
Drupal has released security updates to address several vulnerabilities in the following product:
- Drupal core
- Drupal 7. x
- Drupal 8.8.x
- Drupal 8.9.x
- Drupal 9.0.x
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Cross-site scripting (XSS)
- Bypass of a protection mechanism
- Unauthorized disclosure of information
Best practice and Recommendations:
The CERT team encourages users to update the affected versions and to review Drupal security advisory: