CISA's list that day

22 May 2026

On CISA added 1 vulnerability to its list of exploited vulnerabilities: CVE-2026-9082 in Drupal Core. US federal agencies must fix it by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2026-9082SQL InjectionDrupal CorePatch this weekMetasploit module0.16

Other changes that day

  1. CVE-2019-15107 WebminRansomware use: Unknown to Known.