Debian Security Advisory
DSA-4693-1 drupal7 -- security update
- Date Reported:
- 26 May 2020
- Affected Packages:
- drupal7
- Vulnerable:
- Yes
- Security database references:
- In Mitre's CVE dictionary: CVE-2020-11022, CVE-2020-11023, CVE-2020-13662.
- More information:
-
Several vulnerabilities were discovered in Drupal, a fully-featured content management framework, which could result in an open redirect or cross-site scripting.
For the oldstable distribution (stretch), these problems have been fixed in version 7.52-2+deb9u10.
We recommend that you upgrade your drupal7 packages.
For the detailed security status of drupal7 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/drupal7