https://github.com/drupal/core
Last synced: about 21 hours ago
Repository metadata:
Subtree split of drupal's /core directory
- Host: GitHub
- URL: https://github.com/drupal/core
- Owner: drupal
- License: gpl-2.0
- Created: 2017-03-16T04:26:23.000Z (over 7 years ago)
- Default Branch: 11.x
- Last Pushed: 2024-10-28T06:16:58.000Z (16 days ago)
- Last Synced: 2024-10-29T14:38:46.756Z (14 days ago)
- Language: PHP
- Size: 201 MB
- Stars: 189
- Watchers: 21
- Forks: 53
- Open Issues: 0
-
Metadata Files:
- Changelog: CHANGELOG.txt
- License: LICENSE.txt
Owner metadata:
- Name: Drupal
- Login: drupal
- Email:
- Kind: organization
- Description: Drupal is the open source content management system built for ambitious digital experiences. Official development of Drupal happens on drupal.org.
- Website: https://www.drupal.org/
- Location:
- Twitter:
- Company:
- Icon url: https://avatars.githubusercontent.com/u/43922?v=4
- Repositories: 40
- Last Synced at: 2024-03-25T21:09:27.446Z
- Profile URL: https://github.com/drupal
- Sponsor URL:
Committers metadata
Last synced: about 24 hours ago
Total Commits: 28,520
Total Committers: 89
Avg Commits per committer: 320.449
Development Distribution Score (DDS): 0.662
Commits in past year: 1,963
Committers in past year: 13
Avg Commits per committer in past year: 151.0
Development Distribution Score (DDS) in past year: 0.76
Name | Commits | |
---|---|---|
Alex Pott | a****t@g****m | 9647 |
catch | c****h@3****g | 7455 |
webchick | w****k@2****g | 4100 |
xjm | x****m@6****g | 1186 |
Lee Rowlands | l****s@p****u | 1074 |
Dries | d****s@b****t | 916 |
Lauri Eskola | l****a@a****m | 800 |
Jennifer Hodgdon | y****p@p****m | 620 |
Dave Long | d****e@l****m | 557 |
Gabor Hojtsy | g****r@h****u | 341 |
nod_ | n****_@5****g | 317 |
Larry Garfield | l****y@g****m | 207 |
effulgentsia | a****n@a****m | 191 |
catch | 6****h@u****g | 180 |
Greg Dunlap | g****d@h****m | 125 |
quietone | q****e@2****g | 95 |
bnjmnm | b****m@u****u | 87 |
Lauri Eskola | l****i@1****g | 74 |
catch | c****6@g****m | 68 |
Scott Reeves | C****r@1****g | 61 |
Francesco Placella | p****h@1****g | 55 |
Katherine Bailey | k****e@k****t | 42 |
Chris McCafferty | c****n@g****m | 39 |
catch | g****h@3****g | 34 |
Cristina Chumillas | c****a@1****g | 31 |
Edys Meza | e****a@g****m | 24 |
sun | s****n@u****m | 24 |
Niklas Fiekas | n****s@g****m | 18 |
James Gilliland | j****d@a****g | 13 |
Andrew Berry | d****l@g****m | 12 |
and 59 more... |
Issue and Pull Request metadata
Last synced: about 21 hours ago
Package metadata
- Total packages: 1
-
Total downloads:
- packagist: 46,481,256 total
- Total docker downloads: 169,964,441
- Total dependent packages: 770
- Total dependent repositories: 5,293
- Total versions: 383
- Total maintainers: 3
- Total advisories: 92
packagist: drupal/core
Drupal is an open source content management platform powering millions of websites and applications.
- Homepage:
- Licenses: GPL-2.0-or-later
- Latest release: 10.2.6 (published 7 months ago)
- Last Synced: 2024-11-11T03:13:08.374Z (2 days ago)
- Versions: 383
- Dependent Packages: 770
- Dependent Repositories: 5,293
- Downloads: 46,481,256 Total
- Docker Downloads: 169,964,441
-
Rankings:
- Dependent packages count: 0.052%
- Docker downloads count: 0.059%
- Downloads: 0.105%
- Dependent repos count: 0.126%
- Average: 0.442%
- Forks count: 1.077%
- Stargazers count: 1.232%
- Maintainers (3)
-
Funding:
-
Advisories:
- Cache poisoning in drupal/core
- Drupal Access Control Bypass
- Improper input validation in Drupal core
- Exposure of Resource to Wrong Sphere in Drupal Core
- Drupal Improper Access Control
- Drupal core arbitrary PHP code execution
- Drupal core Information Disclosure vulnerability
- Drupal Core Remote Code Execution Vulnerability
- Symfony Cross-site Scripting (XSS) vulnerability
- Cross-Site Request Forgery in Drupal core
- Lack of domain validation in Druple core
- Arbitrary PHP code execution in Drupal
- Missing Authorization in Drupal
- Drupal Open Redirect
- Directory Traversal in typo3/phar-stream-wrapper
- Enhanced Image plugin for CKEditor is vulnerable to Cross-site scripting (XSS)
- HTTP Proxy header vulnerability
- Cross-site Scripting in Drupal Core
- Drupal PECL YAML parser unsafe object handling
- Drupal Incorrect cache context on password reset page
- Drupal file REST resource does not properly validate
- Drupal saving user accounts can sometimes grant the user all roles
- Drupal Core Remote Code Execution Vulnerability
- Drupal Reflected file download vulnerability
- Drupal Views can allow unauthorized users to see Statistics information
- Drupal Denial of service via transliterate mechanism
- Drupal Open Redirect
- Drupal Cross Site Scripting (XSS) vulnerability
- Drupal Denial of Service vulnerability
- Drupal Users without "Administer comments" can set comment visibility on nodes they can edit
- Drupal cross-site scripting vulnerability
- Drupal Core Remote Code Execution Vulnerability
- Drupal Comment reply form allows access to restricted content
- Drupal Cross-Site Scripting vulnerability
- Drupal Settings Tray access bypass
- Drupal access bypass vulnerability
- Drupal access bypass vulnerability
- Drupal Entity access bypass for entities that do not have UUIDs or have protected revisions
- Drupal Remote code execution
- Drupal REST API can bypass comment approval
- Drupal core access bypass vulnerability
- Drupal Core Cross-site scripting vulnerability
- Drupal Core Access bypass vulnerability
- Drupal Core Access bypass vulnerability
- Drupal Core Arbitrary PHP code execution vulnerability
- Drupal Core Open Redirect vulnerability
- Drupal Core Cross-site scripting vulnerability
- Drupal CRLF injection vulnerability in the drupal_set_header function
- Drupal Form API ignores access restrictions on submit buttons
- Drupal File upload access bypass and denial of service
- Drupal Open redirect vulnerability in the drupal_goto function
- Drupal arbitrary code execution
- Drupal Cross-site scripting (XSS) vulnerability
- Drupal Unprivileged access to config export
- Drupal sensitive information disclosure
- Drupal cross site scripting vulnerability
- Drupal external link injection vulnerability
- Unrestricted Upload of File with Dangerous Type in Drupal core
- Improper input validation in Drupal core
- Access bypass in Drupal core
- Access bypass in Drupal core
- Drupal core Denial of Service vulnerability
- Incorrect Authorization in Drupal core
- Drupal core Unrestricted Upload of File with Dangerous Type
- ckeditor4 vulnerable to cross-site scripting
- Drupal core access bypass vulnerability
- Drupal sensitive information disclosure
- Drupal access control bypass vulnerability
- Drupal Saving user accounts can sometimes grant the user all roles
- Drupal Cross-Site Request Forgery (CSRF)
- Drupal SQL Injection vulnerability
- Drupal Brute force amplification attacks via XML-RPC
- Drupal editor module incorrectly checks access to inline private files
- Drupal Core Cross-Site Request Forgery (CSRF) vulnerability
- Access bypass in Drupal Core
- Incorrect authorization in Drupal core
- Drupal core Cross-site Scripting (XSS) vulnerability in ckeditor
- Drupal core Cross-Site Scripting (XSS) vulnerabilities
- Drupal core Arbitrary PHP code execution
- Drupal core Open Redirect vulnerability
- Drupal core uses a vulnerable Third-party library CKEditor
- Drupal core Multiple vulnerabilities due to the use of the third-party library Archive_Tar
- Drupal core Access bypass
- Drupal core unrestricted file upload
- Drupal core Denial of Service
- Drupal Core Insufficient Contextual Links validation leads to Remote Code Execution
- Drupal core Remote Code Execution
- Drupal Anonymous Open Redirect
- Drupal External URL injection through URL aliases leading to Open Redirect
- Drupal Content moderation Access bypass
- Drupal Full Path Disclosure
- Drupal core Cross-site Scripting (XSS) vulnerability
Dependencies
package.json
npm
- @babel/core ^7.0.0 development
- @babel/preset-env ^7.0.0 development
- @babel/register ^7.7.7 development
- @ckeditor/ckeditor5-alignment 34.1.x development
- @ckeditor/ckeditor5-basic-styles 34.1.x development
- @ckeditor/ckeditor5-block-quote 34.1.x development
- @ckeditor/ckeditor5-code-block 34.1.x development
- @ckeditor/ckeditor5-dev-utils 30.1.x development
- @ckeditor/ckeditor5-editor-classic 34.1.x development
- @ckeditor/ckeditor5-editor-decoupled 34.1.x development
- @ckeditor/ckeditor5-essentials 34.1.x development
- @ckeditor/ckeditor5-heading 34.1.x development
- @ckeditor/ckeditor5-horizontal-line 34.1.x development
- @ckeditor/ckeditor5-html-support 34.1.x development
- @ckeditor/ckeditor5-image 34.1.x development
- @ckeditor/ckeditor5-indent 34.1.x development
- @ckeditor/ckeditor5-language 34.1.x development
- @ckeditor/ckeditor5-link 34.1.x development
- @ckeditor/ckeditor5-list 34.1.x development
- @ckeditor/ckeditor5-paste-from-office 34.1.x development
- @ckeditor/ckeditor5-remove-format 34.1.x development
- @ckeditor/ckeditor5-source-editing 34.1.x development
- @ckeditor/ckeditor5-special-characters 34.1.x development
- @ckeditor/ckeditor5-table 34.1.x development
- @drupal/once 1.0.x development
- @popperjs/core 2.11.x development
- babel-plugin-add-header-comment ^1.0.3 development
- backbone 1.4.x development
- chalk ^4.1.0 development
- chokidar ^3.3.1 development
- chromedriver ^98.0.1 development
- ckeditor5 34.1.x development
- cross-env ^7.0.2 development
- cspell ^5.0.0 development
- css.escape 1.5.x development
- dotenv-safe ^8.2.0 development
- es6-promise 4.2.x development
- eslint ^8.9.0 development
- eslint-config-airbnb-base ^15.0.0 development
- eslint-config-prettier ^8.4.0 development
- eslint-plugin-import ^2.25.4 development
- eslint-plugin-jquery ^1.5.1 development
- eslint-plugin-prettier ^4.0.0 development
- eslint-plugin-yml ^0.14.0 development
- farbtastic https://github.com/mattfarina/farbtastic/archive/1.3u.tar.gz development
- glob ^7.1.2 development
- joyride https://github.com/zurb/joyride/archive/refs/heads/v2.1.tar.gz development
- jquery 3.6.x development
- jquery-form 4.3.x development
- jquery-once 2.2.x development
- jquery-ui 1.13.x development
- js-cookie 3.0.x development
- jsdom ^19.0.0 development
- loadjs 4.2.x development
- minimist ^1.2.2 development
- mkdirp ^1.0.4 development
- nightwatch ^1.6.3 development
- normalize.css 8.0.x development
- picturefill 3.0.x development
- postcss ^7.0.18 development
- postcss-calc ^7.0.1 development
- postcss-header ^2.0.0 development
- postcss-import ^12.0.1 development
- postcss-preset-env ^6.7.0 development
- postcss-pxtorem ^5.1.1 development
- postcss-url ^8.0.0 development
- prettier ^2.1.2 development
- raw-loader ^4.0.2 development
- shepherd.js 9.1.x development
- sortablejs 1.15.x development
- stylelint ^14.0.1 development
- stylelint-checkstyle-formatter ^0.1.2 development
- stylelint-config-standard ^23.0.0 development
- stylelint-order ^5.0.0 development
- tabbable 5.3.x development
- terser ^5.3.4 development
- terser-webpack-plugin ^5.2.0 development
- underscore 1.13.x development
- webpack ^5.51.1 development
- webpack-cli ^4.4.0 development
yarn.lock
npm
- 1064 dependencies
composer.json
packagist
- asm89/stack-cors ^1.3
- composer/semver ^3.3
- doctrine/annotations ^1.13
- doctrine/reflection ^1.2
- egulias/email-validator ^2.1.22|^3.2
- ext-PDO *
- ext-SPL *
- ext-SimpleXML *
- ext-date *
- ext-dom *
- ext-filter *
- ext-gd *
- ext-hash *
- ext-json *
- ext-pcre *
- ext-session *
- ext-tokenizer *
- ext-xml *
- guzzlehttp/guzzle ^6.5.8 || ^7.4.5
- laminas/laminas-diactoros ^2.11
- laminas/laminas-feed ^2.17
- masterminds/html5 ^2.7
- pear/archive_tar ^1.4.14
- php >=7.3.0
- psr/log ^1.1
- stack/builder ^1.0
- symfony-cmf/routing ^2.3
- symfony/console ^4.4
- symfony/dependency-injection ^4.4
- symfony/event-dispatcher ^4.4
- symfony/http-foundation ^4.4.7
- symfony/http-kernel ^4.4
- symfony/mime ^5.4
- symfony/polyfill-iconv ^1.25
- symfony/polyfill-php80 ^1.25
- symfony/process ^4.4
- symfony/psr-http-message-bridge ^2.1
- symfony/routing ^4.4
- symfony/serializer ^4.4
- symfony/translation ^4.4
- symfony/validator ^4.4
- symfony/yaml ^4.4.19
- twig/twig ^2.15
- typo3/phar-stream-wrapper ^3.1.3
lib/Drupal/Component/Annotation/composer.json
packagist
- doctrine/annotations ^1.4
- drupal/core-file-cache ^8.8
- drupal/core-plugin ^8.8
- drupal/core-utility ^8.8
- php >=7.3.0
lib/Drupal/Component/Assertion/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/ClassFinder/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/Datetime/composer.json
packagist
- drupal/core-utility ^8.8
- php >=7.3.0
lib/Drupal/Component/DependencyInjection/composer.json
packagist
- php >=7.3.0
- symfony/dependency-injection ^4.4
- symfony/service-contracts ^1.1|^2
lib/Drupal/Component/Diff/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/Discovery/composer.json
packagist
- drupal/core-file-cache ^8.8
- drupal/core-serialization ^8.8
- php >=7.3.0
lib/Drupal/Component/EventDispatcher/composer.json
packagist
- php >=7.3.0
- symfony/dependency-injection ^4.4
- symfony/event-dispatcher ^4.4
- symfony/event-dispatcher-contracts ^1.1
lib/Drupal/Component/FileCache/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/FileSecurity/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/FileSystem/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/FrontMatter/composer.json
packagist
- drupal/core-serialization ^8.8
- php >=7.3.0
lib/Drupal/Component/Gettext/composer.json
packagist
- drupal/core-render ^9.4
- php >=7.3.0
lib/Drupal/Component/Graph/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/HttpFoundation/composer.json
packagist
- php >=7.3.0
- symfony/http-foundation ^4.4
lib/Drupal/Component/PhpStorage/composer.json
packagist
- drupal/core-file-security ^8.8
- php >=7.3.0
lib/Drupal/Component/Plugin/composer.json
packagist
- php >=7.3.0
- symfony/validator ^4.4
lib/Drupal/Component/ProxyBuilder/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/Render/composer.json
packagist
- drupal/core-utility ^8.8
- php >=7.3.0
lib/Drupal/Component/Serialization/composer.json
packagist
- php >=7.3.0
- symfony/yaml ^4.4
lib/Drupal/Component/Utility/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/Uuid/composer.json
packagist
- php >=7.3.0
lib/Drupal/Component/Version/composer.json
packagist
- php >=7.3.0
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/drupal-core-fixture/composer.json
packagist
- fixtures/drupal-assets-fixture *
tests/Drupal/Tests/Composer/fixtures/ensureBehatDriverVersionsFixture/composer.lock
packagist
- behat/mink-selenium2-driver dev-master development
modules/system/tests/fixtures/HtaccessTest/package.json
npm
modules/system/tests/fixtures/HtaccessTest/yarn.lock
npm
lib/Drupal/Component/Transliteration/composer.json
packagist
- php >=8.1.0
modules/system/tests/fixtures/HtaccessTest/composer.json
packagist
modules/system/tests/fixtures/HtaccessTest/composer.lock
packagist
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/drupal-assets-fixture/composer.json
packagist
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/empty-file/composer.json
packagist
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/empty-fixture/composer.json
packagist
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/empty-fixture-allowing-core/composer.json
packagist
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/project-with-empty-scaffold-path/composer.json
packagist
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/project-with-illegal-dir-scaffold/composer.json
packagist
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/scaffold-override-fixture/composer.json
packagist
tests/Drupal/Tests/Composer/Plugin/Scaffold/fixtures/composer-plugin-implements-scaffold-events/composer.json
packagist
- composer-plugin-api ^2
- drupal/core-composer-scaffold *
modules/package_manager/tests/fixtures/build_test_projects/alpha/1.0.0/composer.json
packagist
modules/package_manager/tests/fixtures/build_test_projects/alpha/1.1.0/composer.json
packagist
modules/package_manager/tests/fixtures/build_test_projects/main_module/composer.json
packagist
modules/package_manager/tests/fixtures/build_test_projects/updated_module/1.0.0/composer.json
packagist
modules/package_manager/tests/fixtures/build_test_projects/updated_module/1.1.0/composer.json
packagist
modules/package_manager/tests/fixtures/fake_site/composer.json
packagist
- drupal/core-dev ^9 development
- drupal/core 9.8.0
- drupal/core-recommended 9.8.0
modules/package_manager/tests/fixtures/fake_site/composer.lock
packagist
- drupal/core-dev 9.8.0 development
- drupal/core 9.8.0
- drupal/core-recommended 9.8.0
modules/package_manager/tests/fixtures/fake_site/custom/package/composer.json
packagist
modules/package_manager/tests/fixtures/fake_site/vendor/drupal/core/composer.json
packagist
modules/package_manager/tests/fixtures/fake_site/vendor/drupal/core-dev/composer.json
packagist
modules/package_manager/tests/fixtures/fake_site/vendor/drupal/core-recommended/composer.json
packagist
modules/package_manager/tests/fixtures/path_repos/cweagans--composer-patches/composer.json
packagist
- composer-plugin-api ^1.0 || ^2.0
modules/package_manager/tests/fixtures/path_repos/drupal--core/composer.json
packagist
modules/package_manager/tests/fixtures/path_repos/drupal--core-dev/composer.json
packagist
modules/package_manager/tests/fixtures/path_repos/drupal--core-recommended/composer.json
packagist
modules/package_manager/tests/fixtures/path_repos/main_module_submodule/composer.json
packagist
- drupal/main_module *
tests/PHPStan/composer.json
packagist
- phpstan/phpstan 1.12.4 development
- phpunit/phpunit ^10 development