CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
60 CVEs gefunden (Seite 1/1)

CVE-2026-15089 - vulnerability in Drupal Commerce guest registration allows . This issue affects Commerce guest regis

🏢 Drupal 📅 10.7.2026 📊 CVSS: 9.1
9.1

CVE-2026-15087 - vulnerability in Drupal Clean RESTful allows . This issue affects Clean RESTful versions: *.*.

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.9
5.9

CVE-2026-15086 - vulnerability in Drupal Raw Formatter [Meta Tag Formatter] allows . This issue affects Raw Formatter

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.9
5.9

CVE-2026-11915 - vulnerability in Drupal Brute force attack protection allows . This issue affects Brute force attack

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.9
5.9

CVE-2026-11914 - vulnerability in Drupal Composer allows . This issue affects Composer versions: *.*.

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.9
5.9

CVE-2026-11913 - vulnerability in Drupal Mother May I allows . This issue affects Mother May I versions: *.*.

🏢 Drupal 📅 10.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-58591 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-58590 - Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing. This issue affects

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-58589 - Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing. This issue affects

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-58588 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-58587 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-55810 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 10.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-55809 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 10.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-55808 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-55807 - Server-Side Request Forgery (SSRF) vulnerability in Drupal Drupal core allows Server Side Request Fo

🏢 Drupal 📅 10.7.2026 📊 CVSS: 3.1
3.1

CVE-2026-55806 - URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Drupal Drupal core allows Conte

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.9
5.9

CVE-2026-55804 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.9
5.9

CVE-2026-55803 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.9
5.9

CVE-2026-15085 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-15084 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-15083 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 10.7.2026 📊 CVSS: 4.2
4.2

CVE-2026-15082 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-15081 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 7.4
7.4

CVE-2026-15080 - Cross-Site Request Forgery (CSRF) vulnerability in Drupal Ray Enterprise Translation allows Cross Si

🏢 Drupal 📅 10.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-15079 - Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Login Disable allo

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-13244 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 10.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-13243 - Cross-Site Request Forgery (CSRF) vulnerability in Drupal Salesforce Suite allows Cross Site Request

🏢 Drupal 📅 10.7.2026 📊 CVSS: 4.8
4.8

CVE-2026-13242 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-13241 - Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing. This issue affect

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-13240 - Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing. This issue affect

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-13239 - Missing Authorization vulnerability in Drupal WissKI allows Forceful Browsing. This issue affects Wi

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-13238 - Incorrect Authorization vulnerability in Drupal Commerce Realex / Global Payments allows Forceful Br

🏢 Drupal 📅 10.7.2026 📊 CVSS: 4.8
4.8

CVE-2026-13237 - Incorrect Authorization vulnerability in Drupal AI Agents allows Forceful Browsing. This issue affec

🏢 Drupal 📅 10.7.2026 📊 CVSS: 4.8
4.8

CVE-2026-13236 - Missing Authorization vulnerability in Drupal AI Agents allows Forceful Browsing. This issue affects

🏢 Drupal 📅 10.7.2026 📊 CVSS: 4.2
4.2

CVE-2026-13235 - Missing Authorization vulnerability in Drupal AI (Artificial Intelligence) allows Forceful Browsing.

🏢 Drupal 📅 10.7.2026 📊 CVSS: 3.3
3.3

CVE-2026-13234 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-13233 - Server-Side Request Forgery (SSRF) vulnerability in Drupal OpenAI Provider allows Server Side Reques

🏢 Drupal 📅 10.7.2026 📊 CVSS: 3.3
3.3

CVE-2026-13232 - Incorrect Authorization vulnerability in Drupal Advanced Content Feedback (aka admin_feedback) allow

🏢 Drupal 📅 10.7.2026 📊 CVSS: 3.1
3.1

CVE-2026-13231 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-12535 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 10.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-11909 - Missing Authorization vulnerability in Drupal Examples for Developers allows Forceful Browsing. This

🏢 Drupal 📅 10.7.2026 📊 CVSS: 3.3
3.3

CVE-2026-11908 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-10770 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-10769 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 10.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-10768 - Missing Authorization vulnerability in Drupal LocalGov Workflows allows Forceful Browsing. This issu

🏢 Drupal 📅 10.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-9726 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 10.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-6816 - An access bypass vulnerability in Drupal TFA Basic Plugins allows users with the administer users pe

🏢 Drupal 📅 28.5.2026 📊 CVSS: 3.8
3.8

CVE-2026-5343 - Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal SAML SSO - Service Prov

🏢 Drupal 📅 28.5.2026 📊 CVSS: 7.4
7.4

CVE-2026-4929 - Simple Hierarchical Select (SHS) for Drupal 7 contains cross-site scripting risk due to improper out

🏢 Drupal 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-4093 - In the Drupal 7 Term Reference Tree module, two stored XSS vectors exist in the widget/formatter ren

🏢 Drupal 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-9082 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Drupal 📅 20.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-8495 - Missing Authorization vulnerability in Drupal Date iCal allows Forceful Browsing. This issue affect

🏢 Drupal 📅 19.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-8493 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 19.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-8492 - Modification of Assumed-Immutable Data (MAID) vulnerability in Drupal Translate Drupal with GTransla

🏢 Drupal 📅 19.5.2026 📊 CVSS: 2.7
2.7

CVE-2026-8491 - Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Node View Permissions a

🏢 Drupal 📅 19.5.2026 📊 CVSS: 3.7
3.7

CVE-2026-6871 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 19.5.2026 📊 CVSS: 6.1
6.1

CVE-2026-6367 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 19.5.2026 📊 CVSS: 6.1
6.1

CVE-2026-6366 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drup

🏢 Drupal 📅 19.5.2026 📊 CVSS: 6.6
6.6

CVE-2026-6365 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 19.5.2026 📊 CVSS: 6.1
6.1

CVE-2026-6095 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 19.5.2026 📊 CVSS: 6.1
6.1

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.