CRITICALVulnerability
Global

CISA orders feds to patch actively exploited Drupal vulnerability

·Source: BleepingComputer

Updated:

Executive Summary

CISA has given U.S. government agencies until Wednesday evening to secure their servers against an SQL injection vulnerability in the Drupal content management system (CMS) that it flagged as actively exploited. [...]

Analysis

CISA has given U.S. government agencies until Wednesday evening to secure their servers against an SQL injection vulnerability in the Drupal content management system (CMS) that it flagged as actively exploited. [...]
Source Attribution

Originally published by BleepingComputer on May 26, 2026.

Related Threats