PT-2026-107755 · Packagist · Drupal/Inline Formatter Field

CVE-2026-107264

·

Published

2026-10-07

·

Updated

2026-10-07

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
The Inline Formatter Field module allows site builders to template and style entities with a field.
This module does not properly protect against template injection when parsing, allowing users to render protected data or execute unsafe Twig commands.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-107264
DRUPAL-CONTRIB-2026-203

Affected Products

Drupal/Inline Formatter Field