CVEFinder.io

CVE-2026-6367

🔶 medium
🔍 Scan for this CVE
Summary

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Drupal core allows Cross-Site Scripting (XSS). This issue affects Drupal core: from 11.3.0 before 11.3.7.

CVSS Score
-
EPSS Score
-
Published Date
2026-05-19
First Seen: 2026-05-20
Last Modified 2026-05-19
Source NVD 🔗
CWE IDs (Weakness Types)

📦 Affected Products 0

No affected products information available

🔗 References 1