Security Advisory

CVE-2026-15084

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-10 21:46:34
Last updated 2026-07-13 18:14:56
Assigner drupal
CVSS score not scored
State PUBLISHED

Description

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal UI Patterns (SDC in Drupal UI) allows Stored XSS. This issue affects UI Patterns (SDC in Drupal UI) versions: from 2.0.0 to 2.0.17.