CVE-2026-8492: Translate Drupal with GTranslate - Less critical - DOM clobbering / link manipulation - SA-CONTRIB-2026-035
Modification of Assumed-Immutable Data (MAID) vulnerability in Drupal Translate Drupal with GTranslate allows Resource Location Spoofing.
This issue affects Translate Drupal with GTranslate: from 0.0.0 before 3.0.5.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Translate Drupal with GTranslateto a version that resolves this vulnerability.Fixed in 3.0.5
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8492?
CVE-2026-8492 is considered a less critical vulnerability affecting the Translate Drupal with GTranslate module.
How do I fix CVE-2026-8492?
To fix CVE-2026-8492, update the Translate Drupal with GTranslate module to version 3.0.6 or later.
What type of vulnerability is CVE-2026-8492?
CVE-2026-8492 is a DOM clobbering / link manipulation vulnerability that allows Resource Location Spoofing.
What versions of Translate Drupal with GTranslate are affected by CVE-2026-8492?
CVE-2026-8492 affects versions of Translate Drupal with GTranslate from 0.0.0 up to 3.0.5 inclusive.
Is there an identifier for the vulnerability CVE-2026-8492?
Yes, CVE-2026-8492 is the official identifier for this particular vulnerability.