You're viewing a limited, public preview. Log in for full access.
Commerce Core - Moderately critical - Cross site scripting - SA-CONTRIB-2026-041
No AI analysis yet.
Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Commerce Core allows Stored XSS. This issue affects Commerce Core versions: from 3.3.0 to 3.3.6.
6.2th percentile
This link opens an external site that isn't part of the platform.