Lyrie
Active Exploitation
1 sources verified·1 min read
By Lyrie Threat Intelligence·5/21/2026

0day Intel: ‼️🚨 Drupal CMS (which powers about 1 in 100 websites on the internet) has just

Source: X search for CVE-2026 critical

Posted: 2026-05-20T22:19:56.000Z

Likes: 86

Full Tweet

‼️🚨 Drupal CMS (which powers about 1 in 100 websites on the internet) has just released, not a 'critical' vuln patch, but a 'highly critical' patch to fix a SQL injection vuln.

This vulnerability only affects sites using PostgreSQL.

ID: CVE-2026-9082 https://t.co/0uXabu2jOw

Source Link

https://x.com/i/status/2057224833751028119

Lyrie Verdict

Lyrie's autonomous defense layer flags this class of exposure the moment it surfaces — no signature update required.

Validated sources

  1. [1]@1831435289341894656 on X