CVE-2024-22362: Drupal

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

Drupal contains a vulnerability with improper handling of structural elements. If this vulnerability is exploited, an attacker may be able to cause a denial-of-service (DoS) condition.

Affected products

  • Drupal Drupal: version 9.3.6 only

Published 2024-01-16. Last modified 2026-06-17.