First published: Wed Jul 20 2022(Updated: )
Drupal core - Moderately critical - Information Disclosure - SA-CORE-2022-012
Credit: mlhess@drupal.org mlhess@drupal.org
Affected Software | Affected Version | How to fix |
---|---|---|
composer/drupal/core | >=7.0.0<7.91.0>=8.9.0<8.10.0>=9.0.0<9.1.0>=9.1.0<9.2.0>=9.2.0<9.3.0>=9.3.0<9.3.19>=9.4.0<9.4.3 | |
Drupal Drupal | >=7.0<7.91 | |
Drupal Drupal | >=8.0.0<9.3.19 | |
Drupal Drupal | >=9.4.0<9.4.3 | |
composer/drupal/core | >=9.4.0<9.4.3 | 9.4.3 |
composer/drupal/core | >=8.0.0<9.3.19 | 9.3.19 |
composer/drupal/core | >=7.0.0<7.91 | 7.91 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Drupal vulnerability is CVE-2022-25275.
The severity level of CVE-2022-25275 is moderately critical.
CVE-2022-25275 is an information disclosure vulnerability.
Versions 7.0.0 to 7.91.0, 8.9.0 to 8.10.0, 9.0.0 to 9.1.0, 9.1.0 to 9.2.0, 9.2.0 to 9.3.0, and 9.3.0 to 9.3.19 of Drupal core are affected by CVE-2022-25275.
To fix CVE-2022-25275, it is recommended to update to the latest available version of Drupal core.