4.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Description
User Interface (UI) Misrepresentation of Critical Information vulnerability in Drupal Drupal core allows Content Spoofing.This issue affects Drupal core: from 8.0.0 before 10.4.9, from 10.5.0 before 10.5.6, from 11.0.0 before 11.1.9, from 11.2.0 before 11.2.8.
Basic Information
ID
CVE-2025-13082
Source
drupal
Published
Nov 18, 2025 at 16:55
Modified
Nov 18, 2025 at 20:32
Affected Product
Vendor
Drupal
Product
Drupal core
Version
8.0.0
Affected Versions
Drupal Drupal core 8.0.0
Drupal Drupal core 10.5.0
Drupal Drupal core 11.0.0
Drupal Drupal core 11.2.0
Drupal Drupal core 10.5.0
Drupal Drupal core 11.0.0
Drupal Drupal core 11.2.0