Skip to main content
Skip to search
Can we use first and third party cookies and web beacons to
understand our audience, and to tailor promotions you see
?
Yes, please
No, do not track me
Drupal.org home
Why Drupal?
About Drupal
Platform overview
Drupal 10
Content Authoring
Content as a Service
Decoupled
Accessibility
Marketing Automation
Multilingual
Security
Personalization
Case studies
Video series
News
Use cases
For Developers
For Marketers
E-commerce
Education
FinTech
Government
Healthcare
High Tech
Nonprofit
Retail
Travel
Resources
Installing Drupal
Documentation
User guide
Local Development Guide
Security
News
Blog
Drupal 7 Migrations
Services
Find an Agency Partner
Find a D7 Migration Partner
Find Integrations & Hosting
Find Drupal Training
Become a Certified Partner
Community
How to Contribute
About the Community
Support
Community Governance
Jobs/Careers
Events
DrupalCon Portland 2024
DrupalCon Barcelona 2024
Community Events
Download
Download
Modules
Themes
Distributions
Issue queues
Browse Repository
Give
Drupal Association
Become an Organization Member
Become a Certified Partner
Become an Individual Member
Make a Donation
Discover Drupal
Drupal Swag Shop
Demo
Demo online
Download
Return to content
Search form
Search
Log in
Create account
Support for Drupal 7 is ending on 5 January 2025—it’s time to migrate to Drupal 10! Learn about the many benefits of Drupal 10 and find migration tools in our resource center.
Learn more
Deprecated - Security advisories for Drupal core
This forum is deprecated —
view current Drupal core security advisories
SA-CORE-2012-004 - Drupal core - Multiple vulnerabilities
By
Drupal Security Team
on
19 Dec 2012 at 18:46 UTC
Advisory ID: DRUPAL-SA-CORE-2012-004
Project:
Drupal core
Version: 6.x, 7.x
Date: 2012-December-19
Security risk:
Moderately critical
Exploitable from: Remote
Vulnerability: Access bypass, Arbitrary PHP code execution
SA-CORE-2012-003 - Drupal core - Arbitrary PHP code execution and Information disclosure
By
Drupal Security Team
on
17 Oct 2012 at 21:29 UTC
Advisory ID: DRUPAL-SA-CORE-2012-003
Project:
Drupal core
Version: 7.x
Date: 2012-October-17
Security risk:
Highly critical
Exploitable from: Remote
Vulnerability: Information Disclosure, Arbitrary PHP code execution
SA-CORE-2012-002 - Drupal core multiple vulnerabilities
By
Drupal Security Team
on
2 May 2012 at 15:17 UTC
Advisory ID: DRUPAL-SA-CORE-2012-002
Project:
Drupal core
Version: 7.x
Date: 2012-May-2
Security risk:
Critical
Exploitable from: Remote
Vulnerability: Denial of Service, Access bypass, Unvalidated form redirect
SA-CORE-2012-001 - Drupal core multiple vulnerabilities
By
Drupal Security Team
on
1 Feb 2012 at 22:06 UTC
Advisory ID: DRUPAL-SA-CORE-2012-001
Project:
Drupal core
Version: 6.x, 7.x
Date: 2012-February-01
Security risk:
Moderately critical
Exploitable from: Remote
Vulnerability: Access bypass, Cross Site Request Forgery, Multiple vulnerabilities
SA-CORE-2011-003 - Drupal core - Access bypass
By
Drupal Security Team
on
27 Jul 2011 at 19:32 UTC
Advisory ID: DRUPAL-SA-CORE-2011-003
Project:
Drupal core
Version: 7.x
Date: 2011-July-27
Security risk:
Less critical
Exploitable from: Remote
Vulnerability: Access bypass
SA-CORE-2011-002 - Drupal core - Access bypass
By
Drupal Security Team
on
30 Jun 2011 at 00:13 UTC
Advisory ID: DRUPAL-SA-CORE-2011-002
Project:
Drupal core
Version: 7.x
Date: 2011-JUNE-29
Security risk:
Highly critical
Exploitable from: Remote
Vulnerability: Access bypass
Pages
« first
‹ previous
1
2
3
4
5
6
7
8
9
…
next ›
last »
Subscribe with RSS