Skip to main content

Drupal Core vulnerabilities

1 published alerts for Drupal Drupal Core.

Actively exploited (KEV)Ransomware

CVE-2018-7600

Drupal Core Remote Code Execution Vulnerability

Drupal Drupal Core is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2018-7600). Drupal Core contains a remote code execution vulnerability that could allow an attacker to exploit multiple attack vectors on a Drupal site, resulting in complete site compromise. CISA remediation due date: 2022-05-03. If you need help checking exposure, call (864) 335-9223.