Early access: the directory is still filling out, and every rating here is a reported experience.

Security releases

Drupal

Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2024-003

SA-CORE-2024-003 Nov 20, 2024 Source: Vendor

Imported by the Drupal advisory catcher from https://www.drupal.org/sa-core-2024-003. 1 reporter(s), 6 fixer(s). Draft. Review before publishing.

Source of record The credited names below are quoted verbatim from the vendor's own advisory: https://www.drupal.org/sa-core-2024-003
Are you credited here? Sign in and claim your line: it is yours immediately, no review queue. The name the vendor printed stays next to your handle for anyone to check against the advisory above, and any member who thinks a claim is wrong can refute it.

Credited

7 lines
Showing 1–7 of 7
CVE-2024-12393 BR2024-0000-011843 unclaimed
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2024-003
Credited as Jay Beaton
CVE-2024-12393 BR2024-0000-011844 unclaimed
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2024-003
Credited as Lee Rowlands of the Drupal Security Team
CVE-2024-12393 BR2024-0000-011845 unclaimed
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2024-003
Credited as catch of the Drupal Security Team
CVE-2024-12393 BR2024-0000-011846 unclaimed
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2024-003
Credited as Mingsong
CVE-2024-12393 BR2024-0000-011847 unclaimed
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2024-003
Credited as Juraj Nemec of the Drupal Security Team
CVE-2024-12393 BR2024-0000-011848 unclaimed
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2024-003
Credited as Dave Long of the Drupal Security Team
CVE-2024-12393 BR2024-0000-011849 unclaimed
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2024-003
Credited as Benji Fisher of the Drupal Security Team