Real-time CVE monitoring

CVE alerts for
Drupal

CVEye scans every new CVE and notifies your team the moment Drupal is affected — before attackers can exploit it.

Monitor Drupal free →No credit card · 7-day trial

Recent Drupal CVEs

  • CVE-2026-6816LOWCVSS 3.8

    An access bypass vulnerability in Drupal TFA Basic Plugins allows users with the administer users permission to view or generate recovery codes for other users. This issue affects TFA Basic Plugins: from 7.x-1.0 through 7.x-1.2.

  • CVE-2026-5343HIGHCVSS 7.4

    Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal SAML SSO - Service Provider allows Privilege Escalation. This issue affects SAML SSO - Service Provider: from 0.0.0 before 3.1.4.

Never miss a Drupal vulnerability

CVEye monitors Drupal and your entire stack 24/7, sending instant alerts via email, Slack, Discord, or webhook the moment a new CVE is published.

7-day free trial · No credit card required

Also monitor