Security advisories for third-party projects that are not part of Drupal core - this includes all modules, themes, and installation profiles that have been contributed by a community member. These posts by the Drupal security team are also sent to the security announcements e-mail list.

Petition - Moderately Critical - Cross Site Scripting (XSS) - SA-CONTRIB-2015-081

SA-CONTRIB-2015-080 - Profile2 Privacy - Cross Site Scripting (XSS)

SA-CONTRIB-2015-079 - Chaos tool suite (ctools) - Multiple vulnerabilities

SA-CONTRIB-2015-078 - Webform - Cross Site Scripting (XSS)

SA-CONTRIB-2015-077 - OG tabs - Cross Site Scripting (XSS)

SA-CONTRIB-2015-076 - Image Title - Cross Site Scripting (XSS)

SA-CONTRIB-2015-075 - Perfecto - Open Redirect

SA-CONTRIB-2015-074 - Site Documentation - Cross Site Scripting (XSS)

SA-CONTRIB-2015-073 - Trick Question - Cross Site Scripting (XSS)

SA-CONTRIB-2015-072 - Commerce Ogone - Access bypass

Pages

Subscribe with RSS Subscribe to Security advisories for contributed projects