CVE-2025-13081
5.9MEDIUMImproperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal core allows Object Injection.This issue affects Drupal core: from 8.0.0 before 10.4.9, fro
Publicado: 11/18/2025Actualizado: 11/24/2025
Descripción
Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal core allows Object Injection.This issue affects Drupal core: from 8.0.0 before 10.4.9, from 10.5.0 before 10.5.6, from 11.0.0 before 11.1.9, from 11.2.0 before 11.2.8.
Análisis IAImpulsado por IA
Productos Afectados
drupaldrupal
drupaldrupal
drupaldrupal
drupaldrupal
Referencias
- https://www.drupal.org/sa-core-2025-006Vendor Advisory