CVE-2020-13663
EUVD-2022-450011.06.2021, 16:15
Cross Site Request Forgery vulnerability in Drupal Core Form API does not properly handle certain form input from cross-site requests, which can lead to other vulnerabilities.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| drupal | drupal | 7.0 ≤ 𝑥 < 7.72 |
| drupal | drupal | 8.8.0 ≤ 𝑥 < 8.8.8 |
| drupal | drupal | 8.9.0 ≤ 𝑥 < 8.9.1 |
| drupal | drupal | 9.0.0 ≤ 𝑥 < 9.0.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration