Cross-site Scripting (XSS) vulnerability in ckeditor of Drupal Core allows attacker to inject XSS. This issue affects: Drupal Core 8.8.x versions prior to 8.8.10.; 8.9.x versions prior to 8.9.6; 9.0.x versions prior to 9.0.6.
We have discovered 24,590 live websites that are affected by CVE-2020-13669.
Product | |
Category | Content Management System |
Vulnerable Domains | 24,590 live websites (9.79% of Drupal install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 21 versions ( 6.89% of all versions) |
![]() | 9,352 websites |
![]() | 3,632 websites |
![]() | 2,046 websites |
![]() | 1,131 websites |
![]() | 967 websites |
![]() | 719 websites |
![]() | 577 websites |
![]() | 447 websites |
![]() | 408 websites |
![]() | 387 websites |
.com | 6,461 websites |
.org | 2,446 websites |
.de | 2,336 websites |
.be | 1,164 websites |
.fr | 1,008 websites |
.edu | 796 websites |
.ru | 787 websites |
.nl | 647 websites |
.net | 542 websites |
.it | 474 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
***.**.uk | ![]() | *** | |
***.org | ![]() | *,*** | |
*****.com | ![]() | *,*** | |
**************.ie | ![]() | *,*** | |
*********.****.fr | ![]() | *,*** | |
*******.org | ![]() | *,*** | |
****.com | ![]() | *,*** | |
***********.org | ![]() | *,*** | |
*********.ca | ![]() | *,*** | |
************.com | ![]() | *,*** |
FAQ