Drupal CVE-2026-9082 exploitation hit 15,000 attempts across 65 countries, forcing urgent patches by May 27, 2026.
Drupal released security updates for a highly critical Drupal Core vulnerability affecting sites that use PostgreSQL.
The Drupal Security Team’s Monday PSA announcing the imminent patch for Drupal core doesn’t include any specifics, with the ...
The Drupal Security Team is releasing patches for all supported core branches today, May 20, 2026, between 17:00 and 21:00 ...
Drupal has announced a "core security release" scheduled for later today, warning that threat actors might develop exploits ...
In its warning, Drupal said a vulnerability in this API allows an attacker to send specially crafted requests resulting in ...
A critical security update for Drupal Core will be released on the evening of Wednesday, May 20. Admins should install it quickly.
The bug was considered serious enough for Drupal's security team to warn admins a day in advance of Wednesday's patch release to reserve time to address the bug. Drupal is the third most popular CMS ...
Drupal released a security advisory to address a vulnerability affecting multiple Drupal core versions. A cyber threat actor could exploit this vulnerability to cause a denial-of-service condition.