Vulnerability DRUPAL-CONTRIB-2026-203
Unknown
UNKNOWN RISK
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
11 hours ago
October 07, 2026 at 04:27 PM UTC
No summary available
Details
The Inline Formatter Field module allows site builders to template and style entities with a field.
This module does not properly protect against template injection when parsing, allowing users to render protected data or execute unsafe Twig commands.
References
Impacted packages
Timeline
Published
11 hours ago
October 07, 2026 at 04:27 PM UTC
Last Modified
7 hours ago
October 07, 2026 at 08:15 PM UTC