These posts by the Drupal security team are also sent to the security announcements e-mail list.

Drupal Core - Critical - Multiple Vulnerabilities - SA-CORE-2016-001

Drupal Core - Overlay - Less Critical - Open Redirect - SA-CORE-2015-004

Drupal Core - Critical - Multiple Vulnerabilities - SA-CORE-2015-003

Drupal Core - Critical - Multiple Vulnerabilities - SA-CORE-2015-002

Drupal Core - Moderately Critical - Multiple Vulnerabilities - SA-CORE-2015-001

Drupal Core - Moderately Critical - Multiple Vulnerabilities - SA-CORE-2014-006

SA-CORE-2014-005 - Drupal core - SQL injection

SA-CORE-2014-004 - Drupal core - Denial of service

SA-CORE-2014-003 - Drupal core - Multiple vulnerabilities

  • Advisory ID: DRUPAL-SA-CORE-2014-003
  • Project: Drupal core
  • Version: 6.x, 7.x
  • Date: 2014-July-16
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

SA-CORE-2014-002 - Drupal core - Information Disclosure

  • Advisory ID: DRUPAL-SA-CORE-2014-002
  • Project: Drupal core
  • Version: 6.x, 7.x
  • Date: 2014-April-16
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Information Disclosure

Pages

Subscribe with RSS Subscribe to Security advisories