CVE-2026-3529 | Google Analytics GA4 up to 1.1.13 on Drupal cross site scripting (sa-contrib-2026-024)
A vulnerability classified as problematic has been found in Google Analytics GA4 up to 1.1.13 on Drupal. Impacted is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2026-3529. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.