Skip to main content

Drupal Releases Security Updates

Report a cyber attack: call 0300 303 5222 or email [email protected]

Affected platforms

The following platforms are known to be affected:

Drupal 9.1 Versions: all prior to 9.1.7

Drupal 9.0 Versions: all prior to 9.0.12

Drupal 8.9 Versions: all prior to 8.9.14

Drupal 7 Versions: all prior to 7.80


Threat details

Introduction

Drupal has released security updates to address a vulnerability affecting Drupal. An attacker could exploit this vulnerability to take control of an affected system.


Remediation advice

Organisations are encouraged to review Drupal Advisory SA-CORE-2021-002 and apply the necessary updates or mitigations.

Last edited: 29 April 2021 12:26 pm