Looking for the vulnerability index of Invicti's legacy products?
Drupal Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2025-31675 - Vulnerability Database

Drupal Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2025-31675

Medium
Reference: CVE-2025-31675
Title: Drupal Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

Improper Neutralization of Input During Web Page Generation (39Cross-site Scripting39) vulnerability in Drupal Drupal core allows Cross-Site Scripting (XSS).This issue affects Drupal core: from 8.0.0 before 10.3.14 from 10.4.0 before 10.4.5 from 11.0.0 before 11.0.13 from 11.1.0 before 11.1.5.