CVE-2026-13242
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Drupal Geolocation Field allows SQL Injection. This issue affects Geolocation Field versions: from 0.0.0 to 3.15.0.
- Published Jul 10, 2026
- CVSS 6.5 medium
- 0.3% chance of exploitation in the next 30 days (EPSS)
Affected software
In the news
- Staying Ahead of Adversarial AI Through Agentic Source Code Review Google Threat Intelligence ·