CVE-2024-22362: High severity Drupal Drupal vulnerability
Published Jan 16, 2024
·Updated
Drupal contains a vulnerability with improper handling of structural elements. If this vulnerability is exploited, an attacker may be able to cause a denial-of-service (DoS) condition.
Affected Software
2 affected components
composer/drupal/core=9.3.6
Drupal Drupal=9.3.6
Event History
Jan 16, 2024
CVE Published
via MITRE·03:39 AM
Data Sourced
via MITRE·03:39 AM
DescriptionWeakness
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeaknessAffected Software
Advisory Published
via GitHub·06:30 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-22362?
The severity of CVE-2024-22362 is classified as high due to its potential to cause a denial-of-service condition.
2
How do I fix CVE-2024-22362?
To fix CVE-2024-22362, update Drupal core to a version that has patched this vulnerability, ideally to a version higher than 9.3.6.
3
What software versions are affected by CVE-2024-22362?
CVE-2024-22362 affects Drupal core version 9.3.6.
4
What kind of attack does CVE-2024-22362 allow?
CVE-2024-22362 allows attackers to exploit the vulnerability to cause a denial-of-service (DoS) condition.
5
Is CVE-2024-22362 related to specific Drupal modules?
CVE-2024-22362 is related to the Drupal core and not limited to specific modules.