QID 996394
Date Published: 2023-12-21
QID 996394: PHP (Composer) Security Update for drupal/core (GHSA-m648-hpf8-qcjw)
Cross Site Request Forgery vulnerability in Drupal Core Form API does not properly handle certain form input from cross-site requests, which can lead to other vulnerabilities.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-m648-hpf8-qcjw for updates and patch information.
Vendor References
- GHSA-m648-hpf8-qcjw -
github.com/advisories/GHSA-m648-hpf8-qcjw
CVEs related to QID 996394
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-m648-hpf8-qcjw | drupal/core |
|