CVE-2019-25012: Webform Report Project Webform Report

High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.

The Webform Report project 7.x-1.x-dev for Drupal allows remote attackers to view submissions by visiting the /rss.xml page. NOTE: This project is not covered by Drupal's security advisory policy.

Affected products

Published 2021-01-01. Last modified 2026-06-17.