GHSA-qp8q-gwf5-hqh2
GitHub Security Advisory
Drupal Cross-Site Scripting vulnerability
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
A Cross-Site Scripting vulnerability exists in Drupal 6.20 with Data 6.x-1.0-alpha14 due to insufficient sanitization of table descriptions, field names, or labels before display.
Affected Packages
Packagist
drupal/core
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: June 18, 2025 6:25 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.