Drupal core - Critical - JavaScript prototype pollution - BACKDROP-SA-CONTRIB-2025-015
Project
Date
Severity
Critical
Affected versions
<7.104
This vulnerability allows attackers to inject arbitrary properties into the JavaScript Object.prototype.
This page displays all public Tag1 D7ES Security Advisories. Check out our Announcements page for all updates.
You can filter this list by project or subscribe to the RSS feed.