Drupal core’s form API has a vulnerability where certain contributed or custom modules’ forms may be vulnerable to improper input validation. This could allow an attacker to inject disallowed values or overwrite data. Affected forms are uncommon, but in certain cases an attacker could alter critical or sensitive data.
More Stories
dokuwiki-20240206b-1.fc42 php-kissifrot-php-ixr-1.8.4-1.fc42 php-phpseclib3-3.0.43-1.fc42
FEDORA-2025-12f2e3e40b Packages in this update: dokuwiki-20240206b-1.fc42 php-kissifrot-php-ixr-1.8.4-1.fc42 php-phpseclib3-3.0.43-1.fc42 Update description: Update DokuWiki to release 2024-02-06b "Kaos", update dependencies accordingly Read...
dokuwiki-20240206b-1.fc43 php-kissifrot-php-ixr-1.8.4-1.fc43 php-phpseclib3-3.0.43-1.fc43
FEDORA-2025-0ec100da82 Packages in this update: dokuwiki-20240206b-1.fc43 php-kissifrot-php-ixr-1.8.4-1.fc43 php-phpseclib3-3.0.43-1.fc43 Update description: Update DokuWiki to release 2024-02-06b "Kaos", update dependencies accordingly Read...
exim-4.98.1-1.fc42
FEDORA-2025-d75bc3d211 Packages in this update: exim-4.98.1-1.fc42 Update description: This is new version fixing possible remote SQL injection and FTBFS with...
USN-7369-1: elfutils vulnerabilities
It was discovered that readelf from elfutils could be made to read out of bounds. If a user or automated...
USN-7348-2: Python regression
USN-7348-1 fixed vulnerabilities in Python. The update introduced a regression. This update fixes the problem. We apologize for the inconvenience....
USN-7367-1: zvbi vulnerabilities
It was discovered that zvbi incorrectly handled memory when processing user input. An attacker could possibly use this issue to...