Over 430,000 Drupal Sites Exposed; High-Risk Security Advisory Issued
A security scan on September 24, 2026, found over 436,000 Drupal sites accessible on the public internet. On September 23, Germany's CERT-BUND issued a high-risk advisory covering 36 vulnerabilities in multiple popular Drupal add-on modules. The affected modules include Webform, Commerce Decoupled Checkout, and several others used for site functions. Fixed versions for all vulnerable modules have been released by their developers. Site administrators are urged to audit their installations, apply patches, and restrict unauthorized access to administrative routes.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)
Log in to join the discussion and vote.
Log in