Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Drupal 8 and 9 File Uploads Can Be Used to Upload Arbitrary Files

MINI-jp45-j8fc-hhgp
Summary

Drupal versions 8 and 9 allow an attacker to upload malicious files, which can lead to website compromise. This issue affects websites using Drupal 8 and 9. To mitigate the risk, update to the latest version of Drupal or apply a patch.

What to do
  • Update weaviate-fips-1.34 to version 1.34.18-r0.
Affected software
VendorProductAffected versionsFix available
– weaviate-fips-1.34 <= 1.34.18-r0 1.34.18-r0
Original title
MINI-jp45-j8fc-hhgp
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026