CyberRota Analysis
AI-GeneratedA Server-Side Request Forgery (SSRF) vulnerability exists in the Drupal core, impacting multiple versions up to 10.5.12 and various 11.x releases. This flaw could allow an attacker to send unauthorized requests from the server, potentially leading to data exposure or further exploitation. Organizations using affected versions of Drupal should prioritize patching this vulnerability to mitigate risks associated with SSRF attacks.
Original NVD Description
Server-Side Request Forgery (SSRF) vulnerability in Drupal Drupal core allows Server Side Request Forgery. This issue affects Drupal core versions: from 0.0.0 to 10.5.12, from 10.6.0 to 10.6.11, from 11.2.0 to 11.2.14, from 11.3.0 to 11.3.12, from 0.0.0 to 11.0.*, from 0.0.0 to 11.1.*.
Related CVEs
Other vulnerabilities affecting the same vendor(s)