PT-2025-44357 · Drupal · Drupal Reverse Proxy Header

Bohdan Artemchuk

+4

·

Published

2025-10-29

·

Updated

2025-10-30

·

CVE-2025-10929

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Drupal Reverse Proxy Header versions prior to 1.1.2
Description An improper validation of consistency within input exists in Drupal Reverse Proxy Header, allowing manipulation of user-controlled variables.
Recommendations Update to version 1.1.2 or later.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-10929
DRUPAL-CONTRIB-2025-111
GHSA-FG8X-Q69G-4QP3

Affected Products

Drupal Reverse Proxy Header