Security advisories for third-party projects that are not part of Drupal core - this includes all modules, themes, and installation profiles that have been contributed by a community member. These posts by the Drupal security team are also sent to the security announcements e-mail list.

Views refresh - Moderately Critical - Access Bypass - DRUPAL-SA-CONTRIB-2017-069

Views - Critical - Access Bypass - DRUPAL-SA-CONTRIB-2017-068

Facebook Like Button - Moderately Critical - XSS - DRUPAL-SA-CONTRIB-2017-066

Session Cache API - Critical - Multiple vulnerabilities - DRUPAL-SA-CONTRIB-2017-065

Better field descriptions - Critical - XSS - SA-CONTRIB-2017-064

Relation - Moderately Critical - Access Bypass - DRUPAL-SA-CONTRIB-2017-063

services_views - Unsupported - SA-CONTRIB-2017-062

  • Advisory ID: DRUPAL-SA-CONTRIB-2017-062
  • Project: services_views (third-party module)
  • Date: 2-Aug-2017

ajax_facets - Unsupported - SA-CONTRIB-2017-061

  • Advisory ID: DRUPAL-SA-CONTRIB-2017-061
  • Project: ajax_facets (third-party module)
  • Date: 2-Aug-2017

baidu_analytics - Unsupported - SA-CONTRIB-2017-060

  • Advisory ID: DRUPAL-SA-CONTRIB-2017-060
  • Project: baidu_analytics (third-party module)
  • Date: 2-Aug-2017

Pages

Subscribe with RSS Subscribe to Security advisories for contributed projects