CVE-2026-3211

Cross-Site Request Forgery (CSRF) vulnerability in Drupal Theme Negotiation by Rules allows Cross Site Request Forgery.This issue affects Theme Negotiation by Rules: from 0.0.0 before 1.2.1.
References
Link Resource
https://www.drupal.org/sa-contrib-2026-012 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:webikon:theme_negotiation_by_rules:*:*:*:*:*:drupal:*:*

History

31 Mar 2026, 19:23

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de falsificación de petición en sitios cruzados (CSRF) en Drupal Theme Negotiation by Rules permite la falsificación de petición en sitios cruzados. Este problema afecta a Theme Negotiation by Rules: desde 0.0.0 antes de 1.2.1.
CPE cpe:2.3:a:webikon:theme_negotiation_by_rules:*:*:*:*:*:drupal:*:*
First Time Webikon
Webikon theme Negotiation By Rules
References () https://www.drupal.org/sa-contrib-2026-012 - () https://www.drupal.org/sa-contrib-2026-012 - Vendor Advisory

26 Mar 2026, 15:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.3
v2 : unknown
v3 : 4.3

25 Mar 2026, 20:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.3

25 Mar 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-25 16:16

Updated : 2026-03-31 19:23


NVD link : CVE-2026-3211

Mitre link : CVE-2026-3211

CVE.ORG link : CVE-2026-3211


JSON object : View

Products Affected

webikon

  • theme_negotiation_by_rules
CWE
CWE-352

Cross-Site Request Forgery (CSRF)