CMS security
(5 articles)May 25, 2026
Ghost CMS CVE-2026-26980: 700+ Sites Hijacked
Ghost CMS CVE-2026-26980 is being actively exploited to hijack sites for ClickFix attacks. Learn how it works and how to protect your install now.
May 23, 2026
Drupal Core SQL Injection Bug Hits CISA KEV
A Drupal core SQL injection vulnerability is actively exploited and added to CISA's KEV catalog. Here's what developers need to patch right now.
May 22, 2026
Drupal CVE-2026-9082: Critical SQL Injection Now Exploited
Hackers are actively exploiting Drupal's critical SQL injection flaw CVE-2026-9082. Learn which versions are affected and how to patch immediately.
May 21, 2026
Critical Drupal Core Flaw: PostgreSQL RCE Risk
A highly critical Drupal core vulnerability exposes PostgreSQL-backed sites to remote code execution. Learn what's affected and how to patch now.

May 5, 2026
MetInfo CMS CVE-2026-29014 Remote Code Execution
MetInfo CMS CVE-2026-29014 is being actively exploited for RCE attacks. Learn how it works, what's at risk, and how to protect your applications now.