CVE-2019-25012: Webform Report Project Webform Report
High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.
The Webform Report project 7.x-1.x-dev for Drupal allows remote attackers to view submissions by visiting the /rss.xml page. NOTE: This project is not covered by Drupal's security advisory policy.
Affected products
- Webform Report Project Webform Report: version 7.x-1.x-dev only
Published 2021-01-01. Last modified 2026-06-17.