Security News

Phar Vulnerabilities Patched in Drupal, TYPO3
2019-05-09 13:57

Updates released this week for the Drupal and TYPO3 open source content management systems (CMSs) patch vulnerabilities related to how Phar archives are handled. The Phar (PHP Archive) package...

Symfony, jQuery Vulnerabilities Patched in Drupal
2019-04-18 06:44

Updates released on Wednesday for Drupal 7 and 8 patch several vulnerabilities affecting third-party Symfony and jQuery components used by the Drupal core. read more

Drupal Releases Core CMS Updates to Patch Several Vulnerabilities
2019-04-17 22:03

Drupal, the popular open-source content management system, has released security updates to address multiple "moderately critical" vulnerabilities in Drupal Core that could allow remote attackers...

Friendly reminder to Drupal admins: Secure your sh!t before latest RCE-holes get you
2019-02-27 18:21

Last week's disclosures are now this week's live attacks Just days after a remote code execution flaw in open-source web publishing software Drupal was made public, researchers have already...

Cryptocurrency Miners Exploit Latest Drupal Flaw
2019-02-27 11:18

Patch Now to Block Remote Code Execution Exploits of Content Management SystemJust days after Drupal warned of a "highly critical" flaw in its web services modules, hackers came calling,...

Latest WinRAR, Drupal flaws under active exploitation
2019-02-26 13:13

CVE-2018-20250, a WinRAR vulnerability that allows attackers to extract a malicious executable to one of the Windows Startup folder to be executed every time the system is booted, and...

Hackers Actively Exploiting Latest Drupal RCE Flaw Published This Week
2019-02-26 12:48

Cybercriminals have actively started exploiting an already patched security vulnerability in the wild to install cryptocurrency miners on vulnerable Drupal websites that have not yet applied...

Drupal RCE Flaw Exploited in Attacks Days After Patch
2019-02-26 08:00

A vulnerability patched recently in the Drupal content management system (CMS) has been exploited in the wild to deliver cryptocurrency miners and other payloads. The attacks started just three...

Hackers Target Fresh Drupal CMS Flaw to Infiltrate Sites
2019-02-22 13:33

CMS Project Team Patches "Highly Critical" Remote Code Execution VulnerabilityPatch alert: Some versions of the popular content management system Drupal have a "highly critical" flaw that...

Highly Critical Drupal RCE Flaw Affects Millions of Websites
2019-02-21 15:54

Admins should update immediately to fix a remote code-execution vulnerability.