Логотип exploitDog
bind:CVE-2025-11570
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-11570

Количество 2

Количество 2

nvd логотип

CVE-2025-11570

4 месяца назад

Versions of the package drupal-pattern-lab/unified-twig-extensions from 0.0.0 are vulnerable to Cross-site Scripting (XSS) due to insufficient filtering of data. **Note:** This is exploitable only if the code is executed outside of Drupal; the function is intended to be shared between Drupal and Pattern Lab. The package drupal-pattern-lab/unified-twig-extensions is unmaintained, the fix for this issue exists in version 1.1.1 of [drupal/unified_twig_ext](https://www.drupal.org/project/unified_twig_ext)

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-64mv-9655-37hx

4 месяца назад

drupal-pattern-lab/unified-twig-extensions is vulnerable to XXS

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-11570

Versions of the package drupal-pattern-lab/unified-twig-extensions from 0.0.0 are vulnerable to Cross-site Scripting (XSS) due to insufficient filtering of data. **Note:** This is exploitable only if the code is executed outside of Drupal; the function is intended to be shared between Drupal and Pattern Lab. The package drupal-pattern-lab/unified-twig-extensions is unmaintained, the fix for this issue exists in version 1.1.1 of [drupal/unified_twig_ext](https://www.drupal.org/project/unified_twig_ext)

CVSS3: 4.6
0%
Низкий
4 месяца назад
github логотип
GHSA-64mv-9655-37hx

drupal-pattern-lab/unified-twig-extensions is vulnerable to XXS

0%
Низкий
4 месяца назад

Уязвимостей на страницу