Drupal 8 and 9 have a reflected cross-site scripting (XSS) vulnerability under certain circumstances.
An attacker could leverage the way that HTML is rendered for affected forms in order to exploit the vulnerability.
Install the latest version:
- If you are using Drupal 8.8.x, upgrade to .
- If you are using Drupal 9.0.x, upgrade to
- of the Drupal Security Team
- , provisional member of the Drupal Security Team
- , provisional member of the Drupal Security Team
SOCIAL SHARE CARD GENERATOR