DEV Community

#drupal

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
What Drupal Builders Should Log After CVE-2026-96366: Detection Ideas for an Access Bypass

What Drupal Builders Should Log After CVE-2026-96366: Detection Ideas for an Access Bypass

Comments
2 min read
Drupal Contributed Modules Under WID-SEC-2026-3554: A Patching Plan for CVE-2026-96359 and the Wider Batch

Drupal Contributed Modules Under WID-SEC-2026-3554: A Patching Plan for CVE-2026-96359 and the Wider Batch

1
Comments
3 min read
Inventory Work for CVE-2026-96357: Finding Affected Drupal Modules First

Inventory Work for CVE-2026-96357: Finding Affected Drupal Modules First

Comments
2 min read
Module inventory hygiene in the light of CVE-2026-96360

Module inventory hygiene in the light of CVE-2026-96360

Comments
2 min read
Why moderately critical advisories like CVE-2026-96360 get postponed

Why moderately critical advisories like CVE-2026-96360 get postponed

Comments
2 min read
Detecting unexpected custom attributes after CVE-2026-96367

Detecting unexpected custom attributes after CVE-2026-96367

1
Comments
2 min read
Why stored XSS in Drupal Webform (CVE-2026-96367) reaches other users

Why stored XSS in Drupal Webform (CVE-2026-96367) reaches other users

Comments
2 min read
Authentication and Privilege Escalation Paths in the Drupal Extension Advisory WID-SEC-2026-3554

Authentication and Privilege Escalation Paths in the Drupal Extension Advisory WID-SEC-2026-3554

Comments 1
2 min read
CVE-2026-96364 in the patch pipeline: dependency order for 16 Drupal projects

CVE-2026-96364 in the patch pipeline: dependency order for 16 Drupal projects

Comments
3 min read
Why CVE-2026-96364 cannot be mapped to a single Drupal module from public records

Why CVE-2026-96364 cannot be mapped to a single Drupal module from public records

Comments
3 min read
Agency Patch Workflows for CVE-2026-96365: Coordinating 16 Module Updates Across Client Sites

Agency Patch Workflows for CVE-2026-96365: Coordinating 16 Module Updates Across Client Sites

Comments
2 min read
What CERT-BUND Published About CVE-2026-96361 and What the Record Leaves Open

What CERT-BUND Published About CVE-2026-96361 and What the Record Leaves Open

Comments
2 min read
CVE-2026-96365 and the Contribution Model: Why Drupal Site Owners Carry the Patch Burden

CVE-2026-96365 and the Contribution Model: Why Drupal Site Owners Carry the Patch Burden

1
Comments
2 min read
Detecting and monitoring around CVE-2026-96360

Detecting and monitoring around CVE-2026-96360

Comments 1
2 min read
Why CVE-2026-96363 Is the Submodule Problem, Not a Drupal Core Problem

Why CVE-2026-96363 Is the Submodule Problem, Not a Drupal Core Problem

Comments 1
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.