CVE-2026-3529
Improper Neutralization of Input During Web Page Generation (“Cross-site Scripting”) vulnerability in Drupal Google Analytics GA4 allows Cross-Site Scripting (XSS).This issue affects Google Analytics GA4: from 0.0.0 before 1.1.14.
More information : https://www.drupal.org/sa-contrib-2026-024
