Millions of websites threatened by highly critical code-execution bug in Drupal

Enlarge (credit: Victorgrigas) Millions of sites that run the Drupal content management system run the risk of being hijacked until they’re patched against a vulnerability that allows hackers to remotely execute malicious code, managers of the open source project warned Wednesday. CVE-2019-6340, as the flaw is tracked, stems from a failure to sufficiently validate user […]

With Drupalgeddon2 still under attack, Drupal fixes a new critical flaw

Enlarge (credit: Lisa Brewster / Flickr) For the second time in a month, websites that use the Drupal content management system are confronted with a stark choice: install a critical update or risk having your servers infected with ransomware or other nasties. Maintainers of the open-source CMS built on the PHP programming language released an […]