Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-11913: Drupal Project Security Issue Unaddressed by Maintainer

DRUPAL-CONTRIB-2026-045 CVE-2026-11913 CVE-2026-11913
Summary

A known security issue in Drupal remains unfixed by the project's maintainer, leaving users vulnerable. To maintain the project and fix the issue, you'll need to take over ownership and follow Drupal's guidelines. If you're interested, review the steps to become the new maintainer.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
Ecosystem VendorProductAffected versions
Packagist:https://packages.drupal.org/8 drupal drupal/mothermayi All versions
– drupal mother may i *.*
Original title
Mother May I - Critical - Unsupported - SA-CONTRIB-2026-045
Original description
vulnerability in Drupal Mother May I allows . This issue affects Mother May I versions: *.*.
Vulnerability type
CWE-79 Cross-site Scripting (XSS)
Published: 10 Jul 2026 · Updated: 17 Jul 2026 · First seen: 10 Jun 2026