VDB
EN

DRUPAL-CORE-2026-003

상세

Drupal 11.3 comes with support for completing entity suggestions whilst adding a link to CKEditor 5.

The suggestions aren't sufficiently sanitized and a malicious user could trigger a stored cross site scripting attack against another user.

이 버전이 영향받나요?

사용 중인 패키지 버전을 입력하면 즉시 평가합니다.

영향 패키지

Packagist / drupal/core
최초 영향 버전: 11.3.0 수정 버전: 11.3.7
수정 composer require drupal/core:^11.3.7

참고