4.4
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:N
Description
Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal AI (Artificial Intelligence) allows Cross-Site Scripting (XSS).This issue affects AI (Artificial Intelligence): from 0.0.0 before 1.0.7, from 1.1.0 before 1.1.7, from 1.2.0 before 1.2.4.
Basic Information
ID
CVE-2025-13981
Source
drupal
Published
Jan 28, 2026 at 20:01
Modified
Jan 29, 2026 at 17:12
Affected Product
Vendor
Drupal
Product
AI (Artificial Intelligence)
Version
0.0.0
Affected Versions
Drupal AI (Artificial Intelligence) 0.0.0
Drupal AI (Artificial Intelligence) 1.1.0
Drupal AI (Artificial Intelligence) 1.2.0
Drupal AI (Artificial Intelligence) 1.1.0
Drupal AI (Artificial Intelligence) 1.2.0