Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-9017 | Drupal General Data Protection Regulation Cross-Site Request Forgery (CSRF) vulnerability |
Github GHSA |
GHSA-jv6r-mj9p-9xff | Drupal General Data Protection Regulation Cross-Site Request Forgery (CSRF) vulnerability |
| Link | Providers |
|---|---|
| https://www.drupal.org/sa-contrib-2025-018 |
|
Tue, 02 Sep 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
General Data Protection Regulation Project
General Data Protection Regulation Project general Data Protection Regulation |
|
| CPEs | cpe:2.3:a:general_data_protection_regulation_project:general_data_protection_regulation:*:*:*:*:*:drupla:*:* | |
| Vendors & Products |
General Data Protection Regulation Project
General Data Protection Regulation Project general Data Protection Regulation |
Tue, 29 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 31 Mar 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) vulnerability in Drupal General Data Protection Regulation allows Cross Site Request Forgery.This issue affects General Data Protection Regulation: from 0.0.0 before 3.0.1, from 3.1.0 before 3.1.2. | |
| Title | General Data Protection Regulation - Moderately critical - Cross Site Request Forgery - SA-CONTRIB-2025-018 | |
| Weaknesses | CWE-352 | |
| References |
|
Status: PUBLISHED
Assigner: drupal
Published:
Updated: 2025-04-29T15:25:26.911Z
Reserved: 2025-03-31T21:30:15.360Z
Link: CVE-2025-31689
Updated: 2025-04-29T15:25:15.649Z
Status : Analyzed
Published: 2025-03-31T22:15:21.517
Modified: 2025-09-02T18:35:30.540
Link: CVE-2025-31689
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA