Kritische Sicherheitslücke in Drupal Core - Updates verfügbar

CERT.at Version 1 original current

Imported from official source

In Drupal Core existiert eine SQL-Injection-Schwachstelle in der Datenbank-Abstraktions-API. Speziell gestaltete Anfragen können zu beliebigen SQL-Injections führen. Die Schwachstelle ist ausschließlich für Drupal-Installationen relevant, die PostgreSQL als Datenbank einsetzen, und kann ohne Authentifizierung durch anonyme Benutzer:innen ausgenutzt werden. …

This version

Version
1 of 1
Recorded
October 03, 2026 20:37
Change
Initial
Content hash
9e705469b36334ebd9a2a5d7ba877eb7
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.