UNKNOWNGHSA-6ccv-8fgf-cjpw

Drupal core Denial of Service vulnerability

Platform

drupal

Component

drupal

Fixed in

10.1.8

The Comment module allows users to reply to comments. In certain cases, an attacker could make comment reply requests that would trigger a denial of service (DOS). Sites that do not use the Comment module are not affected.

How to fix

No official patch available. Check for workarounds or monitor for updates.

Monitor your dependencies automatically

Get notified when new vulnerabilities affect your projects. Free forever.

Start free