Drupal Releases Security Updates
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
Drupal has released security updates to address multiple vulnerabilities affecting Drupal 8.9, 9.1, and 9.2. An attacker could exploit these vulnerabilities to take control of an affected system.
Remediation advice
Affected organisations are encouraged to review the Drupal Security Advisories and apply the necessary updates.
Remediation steps
| Type | Step |
|---|---|
| Patch |
Drupal core - Moderately critical - Cross Site Request Forgery - SA-CORE-2021-006 https://www.drupal.org/sa-core-2021-006 |
| Patch |
Drupal core - Moderately critical - Cross Site Request Forgery - SA-CORE-2021-007 https://www.drupal.org/sa-core-2021-007 |
| Patch |
Drupal core - Moderately critical - Access bypass - SA-CORE-2021-008 https://www.drupal.org/sa-core-2021-008 |
| Patch |
Drupal core - Moderately critical - Access bypass - SA-CORE-2021-009 https://www.drupal.org/sa-core-2021-009 |
| Patch |
Drupal core - Moderately critical - Access Bypass - SA-CORE-2021-010 https://www.drupal.org/sa-core-2021-010 |
Last edited: 20 September 2021 12:00 pm