This is a patch (bugfix) release of Drupal 11 and is ready for use on production sites. Learn more about the latest version of Drupal.

Drupal 11.2.x will receive security coverage until June 2026.

Important update information

  • CKEditor5 is updated from v45.2.0 to v45.2.2 to fix a Cross-Site Scripting (XSS) vulnerability that does not directly effect Drupal core. If your site enables the HTML embed plugin or has a custom plugin that uses an editable element which implements view RawElement is enabled then you should update immediately. See the v45.2.2 release notes for details.

All changes since 11.2.3

VCS Label
11.2.4
Release type
Short description
Actively maintained with new features and backwards-compatible improvements every six months. Use this version for the best compatibility with future releases.
Packaged Git sha1
4c38856b725ff2fbece3dc7cbc161045d82ee092
Release files