Vigilance.fr - Drupal Core: Cross Site Scripting via Link Field Attributes, analyzed on 20/03/2025
May 2025 by Vigilance.fr
An attacker can trigger a Cross Site Scripting of Drupal Core, via Link Field Attributes, in order to run JavaScript code in the context of the web site.
Plus d'information sur : https://vigilance.fr/vulnerability/Drupal-Core-Cross-Site-Scripting-via-Link-Field-Attributes-46633