<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[(kudelskisecurity.com) Highly Critical SQL Injection Vulnerability in Drupal Core Affecting PostgreSQL Backends (CVE-2026-9082)]]></title><description><![CDATA[<p>(kudelskisecurity.com) Highly Critical SQL Injection Vulnerability in Drupal Core Affecting PostgreSQL Backends (CVE-2026-9082)</p><p>New highly critical unauthenticated SQLi in Drupal Core (CVE-2026-9082) enables RCE on PostgreSQL backends. Immediate patching required.</p><p>In brief - CVE-2026-9082 is a highly critical unauthenticated SQL injection flaw in Drupal Core affecting PostgreSQL backends. Attackers can execute arbitrary SQL, escalate privileges, or achieve RCE without authentication. Drupal rates this 19/25 and urges immediate patching.</p><p>Technically - CVE-2026-9082 stems from improper input validation in Drupal’s core API when interacting with PostgreSQL. Attackers can manipulate SQL queries via crafted requests, leading to data exposure, credential theft, or RCE. Exploitation requires no authentication, has low complexity, and affects core functionality. Patches are available for all supported versions.</p><p>Source: <a href="https://kudelskisecurity.com/research/critical-drupal-core-sql-injection-vulnerability" rel="nofollow noopener"><span>https://</span><span>kudelskisecurity.com/research/</span><span>critical-drupal-core-sql-injection-vulnerability</span></a></p><p><a href="https://swecyb.com/tags/Cybersecurity" rel="tag">#<span>Cybersecurity</span></a> <a href="https://swecyb.com/tags/ThreatIntel" rel="tag">#<span>ThreatIntel</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/ee909e25-8361-46d8-8fb7-b29aac4722f6/kudelskisecurity.com-highly-critical-sql-injection-vulnerability-in-drupal-core-affecting-postgresql-backends-cve-2026-9082</link><generator>RSS for Node</generator><lastBuildDate>Mon, 25 May 2026 09:47:37 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/ee909e25-8361-46d8-8fb7-b29aac4722f6.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 21 May 2026 08:30:22 GMT</pubDate><ttl>60</ttl></channel></rss>