The Drupal Security Team announced on February 23rd 2022, a moderately critical Cross-Site Scripting (XSS) vulnerability in the Entity Reference Tree Widget module SA-CONTRIB-2022-026.
...more
From celebrating Drupal’s 20th Anniversary to launching Discover Drupal and the End of Drupal 8 there were quite a few highlighting events to be remembered.
...more
The Drupal security team has announced a critical access bypass vulnerability SA-CONTRIB-2022-001 in the Super Login module in Drupal 8, posted on 2022, January 5th.
...more
The Drupal security team has posted a moderately critical access bypass vulnerability in Mail Login (SA-CONTRIB-2021-047), dated December 22nd, 2021
...more
The Drupal security team has issued on December 8th, 2021 critical cross-site scripting (XSS) and access bypass vulnerability for webform (SA-CONTRIB-2021-045).
...more
Drupal 8 End Of Life was on November 2nd, 2021. But there are quite a few sites still on Drupal 8. What about them? Here are a few pertinent questions commonly raised with regards to D8 EOL.
...more
Dries Buytaert gave the State of Drupal keynote at the DrupalCon Europe 2021 held online. The talk gives us a good overview of the present state of Drupal and what we can look forward to moving forward.
...more
The latest Drupal newsletter reported quite a few security advisory updates. These security updates are for the Core and are moderately critical level.
...more
Drupal Vendor library security release came into effect on August 8th according to PSA . The Core update addresses the CKEditor cross-site scripting issue.
...more