CVE-2019-6340: Drupal Core Remote Code Execution Vulnerability. In Drupal
Drupal Core Remote Code Execution Vulnerability. In Drupal Core, some field types do not properly sanitize data from non-form sources. This can lead to arbitrary PHP code execution in some cases.
- CISA KEV-listed (remediation due 2022-04-15)
- EPSS 94.4% (100.0% percentile)