Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Highly critical Drupal core flaw exposes PostgreSQL sites to RCE attacks

Jensen Huang says he has discovered a ‘completely new’ $200 billion market for NVIDIA

SpaceX’s IPO filing is packed with AI bets, starship dreams and Elon Musk at the center of it all

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Highly critical Drupal core flaw exposes PostgreSQL sites to RCE attacks
Identity

Highly critical Drupal core flaw exposes PostgreSQL sites to RCE attacks

By May 21, 2026No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Rabi LakshmananMay 21, 2026Web security/vulnerabilities

Drupal has released a security update for a “very critical” security vulnerability in Drupal Core. This vulnerability could be exploited by an attacker to accomplish remote code execution, privilege escalation, or information disclosure.

This vulnerability is currently tracked as CVE-2026-9082 and has a CVSS score of 6.5 out of 10.0, according to CVE.org. According to Drupal, the vulnerability exists in the database abstraction API used by Drupal Core to validate queries and ensure they are sanitized against SQL injection attacks.

“A vulnerability in this API could allow an attacker to send a specially crafted request, resulting in arbitrary SQL injection to sites using PostgreSQL databases.” “This can lead to information disclosure and, in some cases, privilege escalation, remote code execution, and other attacks.”

Drupal noted that this security flaw could be exploited by anonymous users, and only sites using PostgreSQL are affected. The next version addresses this issue.

Drupal 11.3.10 Drupal 11.2.12 Drupal 11.1.10 Drupal 10.6.9 Drupal 10.5.10 Drupal 10.4.10

Drupal 7 is not affected. Releases in the supported branches (versions 11.3, 11.2, 10.6, and 10.5) include upstream security updates for Symfony and Twig, so it is essential to install the latest version.

As previously disclosed by Drupal, a manual patch has also been released for Drupal versions 9 and 8, which are no longer supported.

“Drupal 11.1.x, Drupal 11.0.x, Drupal 10.4.x, and lower are no longer supported and are not covered by security,” Drupal says. “Both Drupal 8 and Drupal 9 have reached end of support.

“Due to the severity of this issue, patches for unsupported releases and unsupported versions are being provided as a best effort. Other previously disclosed security vulnerabilities still exist in these unsupported versions.”


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleJensen Huang says he has discovered a ‘completely new’ $200 billion market for NVIDIA

Related Posts

Microsoft open sources RAMPART and Clarity to protect AI agents during development

May 20, 2026

Microsoft suspends malware signing service behind ransomware attack

May 20, 2026

Webworm uses Discord and MS Graph API to deploy EchoCreep and GraphWorm backdoors

May 20, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Highly critical Drupal core flaw exposes PostgreSQL sites to RCE attacks

Jensen Huang says he has discovered a ‘completely new’ $200 billion market for NVIDIA

SpaceX’s IPO filing is packed with AI bets, starship dreams and Elon Musk at the center of it all

Following the lead of the US, the global EV market will become K-shaped

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.