Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Monster Menus allows Stored XSS. This issue affects Monster Menus versions: from 0.0.0 to 9.5.3.
References
| Link | Resource |
|---|---|
| https://www.drupal.org/sa-contrib-2026-116 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
16 Sep 2026, 15:33
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:monster_menus_project:monster_menus:*:*:*:*:*:drupal:*:* | |
| First Time |
Monster Menus Project monster Menus
Monster Menus Project |
|
| References | () https://www.drupal.org/sa-contrib-2026-116 - Third Party Advisory |
Information
Published : 2026-09-02 13:18
Updated : 2026-09-16 15:33
NVD link : CVE-2026-81201
Mitre link : CVE-2026-81201
CVE.ORG link : CVE-2026-81201
JSON object : View
Products Affected
monster_menus_project
- monster_menus
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
