Filter
AND
-Infinity
0

DrupalThe comment module in Drupal 5.x before 5.23 and 6.x before 6.18 allows remote authenticated users w…

3.5
First published (updated )

DrupalThe upload module in Drupal 5.x before 5.23 and 6.x before 6.18 does not properly support case-insen…

First published (updated )

DrupalCSRF

First published (updated )

DrupalSQL Injection, Input Validation

7.5
First published (updated )

DrupalXSS

3.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

DrupalCSRF

First published (updated )

DrupalThe hook_comments API in Drupal 4.7.x before 4.7.8 and 5.x before 5.3 does not pass publication stat…

First published (updated )

DrupalCode Injection

First published (updated )

DrupalCRLF Injection

First published (updated )

DrupalXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

DrupalThe Drupal Project module before 5.x-1.0, 4.7.x-2.3, and 4.7.x-1.3 and Project issue tracking module…

First published (updated )

DrupalXSS

First published (updated )

DrupalCSRF

First published (updated )

DrupalThe (1) Textimage 4.7.x before 4.7-1.2 and 5.x before 5.x-1.1 module for Drupal and the (2) Captcha …

First published (updated )

DrupalThe comment_form_add_preview function in comment.module in Drupal before 4.7.6, and 5.x before 5.1, …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

DrupalThe project_issue_access function in the Project issue tracking 4.7.0 through 5.x before 20070123 mo…

First published (updated )

DrupalUnrestricted file upload vulnerability in the Project issue tracking 4.7.0 through 5.x before 200701…

8.5
First published (updated )

DrupalXSS

First published (updated )

DrupalCSRF

First published (updated )

DrupalXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

DrupalInput Validation

First published (updated )

DrupalEveryBlog 5.x and 6.x, a module for Drupal, allows remote attackers to bypass access restrictions vi…

7.5
First published (updated )

DrupalSQL Injection

7.5
First published (updated )

DrupalXSS

3.5
First published (updated )

DrupalUnspecified vulnerability in EveryBlog 5.x and 6.x, a module for Drupal, allows remote attackers to …

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

DrupalThe user module in Drupal 5.x before 5.11 and 6.x before 6.5 might allow remote authenticated users …

First published (updated )

DrupalThe node module API in Drupal 5.x before 5.11 allows remote attackers to bypass node validation and …

7.5
First published (updated )

DrupalThe core BlogAPI module in Drupal 5.x before 5.11 and 6.x before 6.5 does not properly validate unsp…

First published (updated )

DrupalThe core upload module in Drupal 5.x before 5.11 allows remote authenticated users to bypass intende…

First published (updated )

DrupalXSS

3.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203