Any tier · 109 specialized tests

Drupal Security

Enterprise Drupal vulnerability scanning and hardening assessment

What Gets Tested

Drupal version detection & CVE matching
Drupalgeddon (SA-CORE) vulnerability checks
Module vulnerability scanning
Admin path detection (/admin, /user/login)
settings.php exposure detection
Update status page exposure
RESTful Web Services security testing
JSON:API vulnerability assessment
Views module information disclosure
File system permission checks

How It Works

1

Detection

Identify Drupal version via CHANGELOG.txt, meta tags, and response headers.

2

CVE Scanning

Test for Drupalgeddon variants and known module vulnerabilities.

3

API Testing

Assess RESTful and JSON:API endpoints for information disclosure.

4

Hardening

Check admin exposure, settings.php, update status, and file permissions.

Compliance Coverage

OWASP-A06 (Vulnerable Components) OWASP-A01 (Broken Access Control)

Drupal Security

€59

Any tier · One-time per scan

109 specialized tests + AI-powered analysis

Start Your Scan

Select this addon when configuring your scan

Related Add-Ons