Robuta

Sponsor of the Day: Jerkmate
https://www.herodevs.com/vulnerability-directory/cve-2025-12848 Vulnerability Directory | CVE-2025-12848 | Drupal 7 | HeroDevs A medium-severity XSS flaw affects Drupal’s Webform Multiple File Upload module (≤7.1.6), allowing malicious filenames to trigger injected scripts. Learn... vulnerability directory cvedrupal 7 herodevs2025 https://www.herodevs.com/vulnerability-directory/cve-2026-3532 Vulnerability Directory | CVE-2026-3532 | Drupal 7 | HeroDevs A medium-severity OpenID Connect vulnerability (CVE-2026-3532) in Drupal 7 can lead to broken access control due to insufficient validation of identity... vulnerability directory cvedrupal 7 herodevs20263532 https://www.herodevs.com/vulnerability-directory/cve-2025-9551 Vulnerability Directory | CVE-2025-9551 | Drupal 7 | HeroDevs The Drupal Protected Pages module (≤7.2.4) has no rate limiting on page password forms, allowing attackers to brute-force access without lockout or throttling.... vulnerability directory cvedrupal 7 herodevs20259551 https://www.herodevs.com/vulnerability-directory/sa-contrib-2025-028 Vulnerability Directory | SA-CONTRIB-2025-028 | Drupal 7 | HeroDevs The Access Control module contains a broken-access exploit that allows access to the system via a brute-force attack on the login page. drupal 7 herodevsvulnerability directorysacontrib2025 https://www.herodevs.com/vulnerability-directory/cve-2025-31675 Vulnerability Directory | CVE-2025-31675 | Drupal 7 | HeroDevs Learn about a stored XSS vulnerability in the Drupal 7 Link module, affected versions, risks, and how HeroDevs patches it in Link NES 7.1.14. vulnerability directory cvedrupal 7 herodevs2025 https://www.herodevs.com/vulnerability-directory/cve-2026-1556 Vulnerability Directory | CVE-2026-1556 | Drupal 7 | HeroDevs Learn about a Drupal 7 File Field Paths vulnerability that can leak private files via filename collisions, plus fixes and mitigation guidance. vulnerability directory cvedrupal 7 herodevs20261556 https://www.herodevs.com/support/nes-drupal Drupal 7 - Never-Ending Support (NES) | HeroDevs Never-Ending Support for Drupal 7 from HeroDevs means you can stay secure, compatible, and compliant without migrating away. never ending supportdrupal 7nes herodevs https://docs.herodevs.com/drupal/modules/drupal-nes-system-module Drupal 7 NES System Module | HeroDevs Docs Core system module for HeroDevs Never-Ending Support functionality drupal 7 nesherodevs docssystemmodule