Drupal CVE-2026-9082 Is Now on CISA's Watch List — 15,000 Attacks Already Detected and the Window to Patch Is Closing
A critical SQL injection flaw in Drupal Core is under active attack just 48 hours after patching. CISA added it to its Known Exploited Vulnerabilities catalog, and over 15,000 attacks have already been observed. If your website runs Drupal on PostgreSQL, here's what you need to know right now.