PT-2026-63536 · Packagist · Drupal Search Autocomplete

CVE-2026-16640

·

Publicado

2026-07-22

·

Atualizado

2026-07-22

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
This module enables you to add autocomplete suggestions for search forms created with the [Search API module](/project/search api).
The module ships with a test script that is accessible to anonymous users and doesn't sufficiently validate user input, leading to a Cross Site Scripting vulnerability.
This vulnerability is mitigated by the fact that the web server must be configured to display warning messages to users.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2026-16640
DRUPAL-CONTRIB-2026-082

Produtos afetados

Drupal Search Autocomplete