Get a Pentest and security assessment of your IT network.

Cyber Security

Drupal issues emergency fix for critical bug with known exploits

The vulnerability is caused by two bugs in the PEAR Archive_Tar library used by the content management system. The vulnerability can be exploited if the CMS is configured to allow and process file uploads. Over 944,000 websites are using vulnerable Drupal versions. The Department of Homeland Security has also issued an alert urging admins and users to upgrade to the patched versions of the CMS. The company recommends installing the following updates on affected servers: Drupal 9.0, Drupal 8.9.10 or earlier users should update to.

Source: https://www.bleepingcomputer.com/news/security/drupal-issues-emergency-fix-for-critical-bug-with-known-exploits/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security