Vulnerability Database

With exploit

Composer icon drupal / drupal

Title Severity Exploit Date Affected Version
CVE-2024-55636 Critical Dec 10, 2024 >= 10.3.0 < 10.3.9
>= 8.0.0 < 10.2.11
>= 11.0.0 < 11.0.8
CVE-2024-55635 Medium Dec 10, 2024 >= 7.0 < 7.102
CVE-2024-55634 High Dec 10, 2024 >= 10.3.0 < 10.3.9
>= 8.0.0 < 10.2.11
>= 11.0.0 < 11.0.8
CVE-2024-12393 Medium Dec 10, 2024 >= 10.3.0 < 10.3.9
>= 11.0.0 < 11.0.8
>= 8.8.0 < 10.2.11
CVE-2024-11942 Medium Dec 5, 2024 >= 10.0.0 < 10.2.10
CVE-2024-11941 High Dec 5, 2024 >= 10.2.0 < 10.2.2
>= 8.0.0 < 10.1.8
CVE-2024-45440 Medium Aug 29, 2024 == 2023-05-09
Drupal Cross-Site Scripting (XSS) affecting CKEditor Third-party library Medium May 15, 2024 >= 8.0.0 < 8.9.16
>= 9.0.0 < 9.1.12
>= 9.2.0 < 9.2.4
Drupal core Arbitrary PHP code execution High May 15, 2024 >= 7.0.0 < 7.75
>= 8.0.0 < 8.8.12
>= 8.9.0 < 8.9.10
>= 9.0.0 < 9.0.9
Drupal core uses a vulnerable Third-party library CKEditor Medium May 15, 2024 >= 8.0.0 < 8.7.12
>= 8.8.0 < 8.8.4