CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

[NEW] [UNPATCHED] [high] Drupal Module: Multiple vulnerabilities enable unspecified attack

highCVE-2026-76755CVE-2026-76756CVE-2026-76757CVE-2026-76758CVE-2026-76759CVE-2026-76782
An attacker can exploit multiple vulnerabilities in various Drupal extensions to perform an unspecified attack.

CSIRTS triage

What
Multiple unspecified Drupal extensions contain vulnerabilities enabling unspecified attacks; patch status is not available.
Who is affected
Drupal installations with affected extensions are vulnerable to unspecified attack vectors.
Urgency
High urgency; unpatched status and high severity rating indicate these vulnerabilities remain exploitable with no immediate fix.
Action
Monitor Drupal security advisories for patch availability and disable or replace affected extensions until patches are released.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch Drupal Module

Get an email when a new Drupal Module advisory drops — max one per day, one-click unsubscribe.

Details

Source
CERT-Bund (BSI) Security Advisories (DE · national-cert · site)
Severity
high
Published
2026-08-20
Exploitation
Not in CISA KEV at last sync
Language
Machine-translated to English — verify against the original

Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2943

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2026-76755coverage & exploitation statusNVD · CVE.org
CVE-2026-76756coverage & exploitation statusNVD · CVE.org
CVE-2026-76757coverage & exploitation statusNVD · CVE.org
CVE-2026-76758coverage & exploitation statusNVD · CVE.org
CVE-2026-76759coverage & exploitation statusNVD · CVE.org
CVE-2026-76782coverage & exploitation statusNVD · CVE.org

Recent advisories for Drupal Module

A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.

More from CERT-Bund (BSI) Security Advisories