—
DRUPAL-CONTRIB-2025-046
Details
This module provides support for creating searches using the Apache Solr search engine and the Search API Drupal module.
The module doesn't sufficiently protect certain routes from CSRF attacks.
This vulnerability is mitigated by the fact that a site admin would have to perform further steps after the attack for it to have any effect.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist:https://packages.drupal.org/8/drupal/search_api_solr
Introduced in:
0Fixed in: 4.3.9Upgrade drupal/search_api_solr to 4.3.9 or newer (ecosystem packagist:https://packages.drupal.org/8).