Zum Inhalt springen.
Sympa Menü

it-securitynotifies - [IT-SecNots] [Security-news] UEditor - 百度编辑器 - Critical - Unsupported - SA-CONTRIB-2025-044

it-securitynotifies AT lists.piratenpartei.de

Betreff: Sicherheitsankündigungen

Listenarchiv

[IT-SecNots] [Security-news] UEditor - 百度编辑器 - Critical - Unsupported - SA-CONTRIB-2025-044


Chronologisch Thread  
  • From: security-news AT drupal.org
  • To: security-news AT drupal.org
  • Subject: [IT-SecNots] [Security-news] UEditor - 百度编辑器 - Critical - Unsupported - SA-CONTRIB-2025-044
  • Date: Wed, 23 Apr 2025 16:59:11 +0000 (UTC)
  • Authentication-results: lists.piratenpartei.de; dkim=pass header.d=drupal.org header.s=default header.b=dnw2ROuK; dmarc=pass (policy=none) header.from=drupal.org; spf=pass (lists.piratenpartei.de: domain of security-news-bounces AT drupal.org designates 140.211.166.133 as permitted sender) smtp.mailfrom=security-news-bounces AT drupal.org
  • Dkim-filter: OpenDKIM Filter v2.11.0 smtp2.osuosl.org 9720441A5B
  • Dkim-filter: OpenDKIM Filter v2.11.0 smtp1.osuosl.org CA8B383312
  • List-archive: <http://lists.drupal.org/pipermail/security-news/>
  • List-id: <security-news.drupal.org>

View online: https://www.drupal.org/sa-contrib-2025-044

Project: UEditor - 百度编辑器 [1]
Date: 2025-April-23
Security risk: *Critical* 16 ∕ 25
AC:Complex/A:Admin/CI:All/II:All/E:Theoretical/TD:All [2]
Vulnerability: Unsupported

Affected versions: *
CVE IDs: CVE-2025-3903
Description: 
The security team is marking this project unsupported. There is a known
security issue with the project that has not been fixed by the maintainer. If
you would like to maintain this project, please read:
https://www.drupal.org/node/251466#s-becoming-owner-maintainer-or-co-mai...
[3]

Solution: 
If you use this project, you should uninstall it. To take over
maintainership, please read
https://www.drupal.org/node/251466#s-becoming-owner-maintainer-or-co-mai...
[4]


[1] https://www.drupal.org/project/ueditor
[2] https://www.drupal.org/security-team/risk-levels
[3] https://www.drupal.org/node/251466#s-becoming-owner-maintainer-or-co-maintainer-of-a-project-that-is-unsupported-for-security-reasons
[4] https://www.drupal.org/node/251466#s-becoming-owner-maintainer-or-co-maintainer-of-a-project-that-is-unsupported-for-security-reasons

_______________________________________________
Security-news mailing list
Security-news AT drupal.org
Unsubscribe at https://lists.drupal.org/mailman/listinfo/security-news


  • [IT-SecNots] [Security-news] UEditor - 百度编辑器 - Critical - Unsupported - SA-CONTRIB-2025-044, security-news, 23.04.2025

Archiv bereitgestellt durch MHonArc 2.6.19+.

Seitenanfang