Neutrino Project

© Getty Images/Rest of World

© Rest of World/iStock
I’m not sure how this slipped under the radar but check this out.
The Drupal Association has been given a grant, and we know from the credits on symfony vulnerabilities that Mythos has scanned them.
This is huge and reassures us that once again, Drupal is, and will remain, the most secure open-source CMS out there.
https://thephp.foundation/blog/2026/05/18/announcing-ecosystem-security-team/
Edit - reworded para 2 based on rereading the context.
I picked up a new client today. A charity based in the UK.
The “webmaster” (her words) was a 79 year old lady who started Drupal when she was 70.
It was a delight to talk to her and hear her talk about composer, git, and the things we take for granted.
It’s honestly one of the most wholesome things I’ve encountered in my 20+ years of running a Drupal agency.
She wanted a D10 to D11 upgrade and explained about the composer hell she went through. I agreed to help her and estimated a couple of hours to assist. It’s a super simple site, and that’s honestly how long it will take.
Anyway, I wanted to share the story and I hope I’m still doing Drupal at the age of 79 with as much passion as my new client has for her project.
Is there an alternative to the "Webform" module for Drupal 11 that already has a stable release and is covered by the security advisory policy? These are both requirements that i can't deviate from.
Tiny patch, huge impact:
if (is_array($condition['value'])) {
$condition['value'] = array_values($condition['value']);
}
Drupal fixed PostgreSQL placeholder generation by reindexing array keys before query translation.
Without it, attacker-controlled keys could influence SQL placeholder construction.
Affects PostgreSQL-backed Drupal sites.
Anonymous exploitation possible.
Advisory:
[https://www.drupal.org/sa-core-2026-004\](https://www.drupal.org/sa-core-2026-004)

© Rest of World/iStock
This is bug-fix release for 1.29.0.
Feature highlights✨:
.txt import of feed URLs in additional to e.g. OPMLBug fixes highlights 🐛:
UI highlights 🖼:
This release has been made by @Alkarex, @Frenzie, @IEEE-754, @Inverle, @McFev, @ciro-mota, @cweiske, @polybjorn and newcomer @mzl2233
Full changelog:
lib_opml library #8652, #8853,
| AIs are eating our websites, and we need to adapt by bringing AI into our website to enhance our content and user experience and provide a five-star dining experience. [link] [comments] |
| Probably the reason for the security update tonight! [link] [comments] |
Firstly thank you for such detailed suggestions and I am learning Drupal at a good pace, enjoying most of the time and process. I am learning mostly frontend right now and absorbing everything, learning some backend too but not heavily, would go on it later
I would really appreciate some help from your side as you all have been in the Drupal market since so long, I have a drupal interview in coming week, the person said its frontend heavy role, you will be working mostly on the frontend with HTML CSS JS.
While I understand how Drupal architecture works and how to make things and how does this css works here,
I am confused what can I be asked in the interviews, mainly what is asked in Drupal? would they ask me from html css? I come from a full stack web dev background so really no idea how it works in low code interviews, its a part time role. Just 1 round of interview to show my understanding and skills
Any help is good, I will really appreciate, thank you so much !!!
May 20, 13:03 UTC
Resolved - Between 06:35 UTC & 12:36 UTC today, our engineering team identified an issue impacting the Cloud Firewall. During this period, users might have encountered issues while updating their firewall rules.
Our team has taken appropriate measures to address the issue. We can confirm that service has been restored and is now functioning normally.
We regret the inconvenience caused and appreciate your patience and understanding. However, if you continue to experience any issues, please create a support ticket for further analysis.
May 20, 12:43 UTC
Monitoring - Our engineering team has implemented a fix that affected the Cloud Firewall rules. Users should now be able to update their firewalls successfully.
We are actively monitoring the situation to ensure overall stability. We appreciate your patience and will provide an update once the issue is fully confirmed as resolved.
May 20, 12:08 UTC
Identified - Our engineering team identified an issue impacting Cloud Firewall Product. During this time, users may notice HTTP 500 errors when updating firewalls.
We apologize for the inconvenience and will share an update once more information is available.

© iStock