{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreifqv5zwtiurugkfpjuqbepdo5z4sbejpkmcemcwpsiyp6z47ty2im",
"uri": "at://did:plc:ghkvexthfanuyq7fb5veq6tw/app.bsky.feed.post/3mmjafg2cqou2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreihumpgkff6maq7nidaivmfoept57nxy7qggb4htyaka7xnechpb5m"
},
"mimeType": "image/jpeg",
"size": 411072
},
"path": "/2026/05/drupal-core-sql-injection-bug-actively.html",
"publishedAt": "2026-05-23T07:23:48.000Z",
"site": "https://thehackernews.com",
"textContent": "The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a recently patched critical security flaw impacting Drupal Core to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation.\n\nThe vulnerability in question is CVE-2026-9082 (CVSS score: 6.5), an SQL injection vulnerability affecting all supported versions of Drupal Core.\n\n\"Drupal Core",
"title": "Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEV"
}