Drupal CVE-2026-9082: Unauthenticated SQL Injection in Core — Government and University Sites at Immediate Risk
Drupal's CVE-2026-9082 is a critical SQL injection in core — no authentication required, full database read/write access. Affects Drupal 10.4–11.3.…