Drupal 9.3.22
29 September 2022
Drupal version 9.3.22 is now available.
Upgrading to Drupal 9.3.22
Drupal 9.3.22 can be upgraded to (or installed) using any of Installatron's products. Use Installatron's optional Automatic Update feature to automatically apply Drupal updates as new versions are released, or use Installatron's Clone feature to duplicate an existing Drupal install to test the 9.3.22 upgrade prior to applying it live. Get started managing your Drupal installations with Installatron
What's New in Drupal 9.3.22
Security
- Drupal core - Critical - Multiple vulnerabilities - SA-CORE-2022-016 - Drupal uses the Twig third-party library for content templating and sanitization. Twig has released a security update that affects Drupal. Twig has rated the vulnerability as high severity. Multiple vulnerabilities are possible if an untrusted user has access to write Twig code, including potential unauthorized read access to private files, the contents of other files on the server, or database credentials. The vulnerability is mitigated by the fact that an exploit is only possible in Drupal core with a restricted access administrative permission.