Drupal released security updates for a highly critical Drupal Core vulnerability affecting sites that use PostgreSQL.
Drupal CVE-2026-9082 exploitation hit 15,000 attempts across 65 countries, forcing urgent patches by May 27, 2026.
Drupal released a point update for its core engine to patch a critical access bypass vulnerability. A critical vulnerability in the Drupal Core engine was addressed in an update released Wednesday.
Drupal has announced a "core security release" scheduled for later today, warning that threat actors might develop exploits within hours of the update disclosure.
In its warning, Drupal said a vulnerability in this API allows an attacker to send specially crafted requests resulting in ...
A critical security update for Drupal Core will be released on the evening of Wednesday, May 20. Admins should install it quickly.
Drupal has issued a security update which fixes a number of critical flaws in the website management platform's core engine. On Thursday, Drupal, an open-source content management system (CMS) used by ...