Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-12173 | Cross-Site Request Forgery (CSRF) vulnerability in Drupal Search API Solr allows Cross Site Request Forgery.This issue affects Search API Solr: from 0.0.0 before 4.3.9. |
| Link | Providers |
|---|---|
| https://www.drupal.org/sa-contrib-2025-046 |
|
Tue, 02 Sep 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Drunkenmonkey
Drunkenmonkey search Api Solr |
|
| CPEs | cpe:2.3:a:drunkenmonkey:search_api_solr:*:*:*:*:*:drupal:*:* | |
| Vendors & Products |
Drunkenmonkey
Drunkenmonkey search Api Solr |
Wed, 23 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 23 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) vulnerability in Drupal Search API Solr allows Cross Site Request Forgery.This issue affects Search API Solr: from 0.0.0 before 4.3.9. | |
| Title | Search API Solr - Moderately critical - Cross Site Request Forgery - SA-CONTRIB-2025-046 | |
| Weaknesses | CWE-352 | |
| References |
|
Status: PUBLISHED
Assigner: drupal
Published:
Updated: 2025-04-23T17:53:57.671Z
Reserved: 2025-04-23T16:43:16.335Z
Link: CVE-2025-3907
Updated: 2025-04-23T17:53:50.982Z
Status : Analyzed
Published: 2025-04-23T17:16:56.273
Modified: 2025-09-02T18:37:25.370
Link: CVE-2025-3907
No data.
OpenCVE Enrichment
No data.
EUVD