Description
Drupal Core is prone to a denial of service vulnerability. Exploiting this issue may allow an attacker to abuse install.php, which can cause cached data to become corrupted, thus causing a site to be temporarily impaired. Drupal Core version 8.8.0 is vulnerable.
Remediation
Update to Drupal Core version 8.8.1 or latest
References
Related Vulnerabilities
PHP Other Vulnerability (CVE-2007-1777)
Apache HTTP Server Resource Management Errors Vulnerability (CVE-2011-1928)
Apache Tomcat Other Vulnerability (CVE-2002-0682)
Joomla! Core 3.x.x Cross-Site Request Forgery (3.7.0 - 3.9.18)
Next.js Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2025-30218)