Drupal Material Admin是Drupal社区的一个为 Drupal 后台提供基于 Google Material Design 风格的管理主题,提供现代化且直观的用户界面。 Drupal Material Admin存在安全漏洞,该漏洞源于存在已知安全问题,攻击需管理员权限,会影响到所有的保密性、完整性和可用性。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Drupal | Material Admin | *.* | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-31680 | Matomo Analytics - Moderately critical - Cross site request forgery - SA-CONTRIB-2025-008 | |
| CVE-2025-3062 | Drupal Admin LTE theme - Critical - Unsupported - SA-CONTRIB-2025-010 | |
| CVE-2025-3059 | Profile Private - Critical - Unsupported - SA-CONTRIB-2025-002 | |
| CVE-2025-3060 | Flattern – Multipurpose Bootstrap Business Profile - Critical - Unsupported - SA-CONTRIB-2 | |
| CVE-2025-31695 | Link field display mode formatter - Moderately critical - Cross site scripting - SA-CONTRI | |
| CVE-2025-31690 | Cache Utility - Moderately critical - Cross Site Request Forgery - SA-CONTRIB-2025-019 | |
| CVE-2025-31688 | Configuration Split - Moderately critical - Cross Site Request Forgery - SA-CONTRIB-2025-0 | |
| CVE-2025-31687 | SpamSpan filter - Moderately critical - Cross Site Scripting - SA-CONTRIB-2025-016 | |
| CVE-2025-31697 | Formatter Suite - Moderately critical - Cross site scripting - SA-CONTRIB-2025-026 | |
| CVE-2025-31694 | Two-factor Authentication (TFA) - Moderately critical - Access bypass - SA-CONTRIB-2025-02 | |
| CVE-2025-31692 | AI (Artificial Intelligence) - Critical - Remote Code Execution - SA-CONTRIB-2025-021 | |
| CVE-2025-31689 | General Data Protection Regulation - Moderately critical - Cross Site Request Forgery - SA | |
| CVE-2025-31693 | AI (Artificial Intelligence) - Moderately critical - Gadget Chain - SA-CONTRIB-2025-022 | |
| CVE-2025-31696 | RapiDoc OAS Field Formatter - Moderately critical - Cross site scripting - SA-CONTRIB-2025 | |
| CVE-2025-31691 | OAuth2 Server - Moderately critical - Access bypass - SA-CONTRIB-2025-020 | |
| CVE-2025-3057 | Drupal core - Critical - Cross site scripting - SA-CORE-2025-001 | |
| CVE-2025-31685 | Open Social - Moderately critical - Access bypass - SA-CONTRIB-2025-014 | |
| CVE-2025-31681 | Authenticator Login - Critical - Access bypass - SA-CONTRIB-2025-009 | |
| CVE-2025-31683 | Google Tag - Moderately critical - Cross Site Request Forgery - SA-CONTRIB-2025-012 | |
| CVE-2025-31684 | OAuth2 Client - Moderately critical - Cross Site Request Forgery - SA-CONTRIB-2025-013 |
Showing top 20 of 30 CVEs. View all on vendor page → →
No comments yet