Under certain circumstances the File module/subsystem allows a malicious user to upload a file that can trigger a cross-site scripting (XSS) vulnerability.
- If you are using Drupal 8.6, update to .
- If you are using Drupal 7, update to
of the Drupal Security Team
of the Drupal Security Team
of the Drupal Security Team
Peter Wolanin of the Drupal Security Team
SOCIAL SHARE CARD GENERATOR