Finding
indicator:29386:descriptionWhat happened
CISA KEV describes CVE-2026-9082 as: Drupal Core contains a SQL injection vulnerability that could allow for privilege escalation and remote code execution via specially crafted requests sent with the database abstraction API.