Drupal core - Moderately critical - Improper input validation - SA-CORE-2022-003 Reproducible: Always
"Drupal core's form API has a vulnerability where certain contributed or custom modules' forms may be vulnerable to improper input validation. This could allow an attacker to inject disallowed values or overwrite data. Affected forms are uncommon, but in certain cases an attacker could alter critical or sensitive data." Thanks for reporting! Please bump to 7.88 and 9.2.13.
commit 7ddc64889b1bc2a991391d2a53f627d8c6bb2303 Author: Alfredo Tupone <tupone@gentoo.org> Date: Tue May 3 09:28:20 2022 +0200 www-apps/drupal: bump version
Looks like we never had an affected version for 9.2.x. All done, thanks!