Security
The below vulnerabilities is only present in alpha and beta releases with our new AI capabilities which is why this update is not part of the Drupal security team's release cycle.
- CVE-2025-32711 (EchoLeak): Complete mitigation of data exfiltration vulnerability in AI output with simplified URL filtering
- CVE-2025-13981 (CVE-2025-13981): The module didn't sufficiently filter LLM responses. This lead to a cross-site scripting (XSS) vulnerability where an attacker can use prompt injections on user-generated content with the LLM as context.
---
AI Page builder available for closed beta testing on request.
3.x Branch is for Bootstrap 5 themes only.
Bootstrap 3 and 4 sites not supported.
Sites with non-bootstrap themes are supported but you will want to add custom styling for utility classes like bg-primary bg-secondary etc.
VCS Label
3.0.0-alpha74
Release type
Short description
EXPERIMENTAL: expect breaking changes. BS5 only.
Packaged Git sha1
40c1ec36bca73d5d0af89ff5fdd20a4207f740c9
Release files