PT-2025-15837 · Drupal · Drupal Web-T

·

CVE-2025-3475

·

Published

2025-04-09

·

Updated

2025-06-03

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions: Drupal WEB-T versions 0.0.0 through 1.1.0
Description: The issue affects Drupal WEB-T, allowing excessive allocation and content spoofing due to allocation of resources without limits or throttling and incorrect authorization.
Recommendations: For versions 0.0.0 through 1.1.0, update to version 1.1.0 or later to resolve the issue.

Exploit

Fix

Allocation of Resources Without Limits

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-3475
DRUPAL-CONTRIB-2025-030

Affected Products

Drupal Web-T