Agency Patch Workflows for CVE-2026-96365: Coordinating 16 Module Updates Across Client Sites Vulnerability overview WID-SEC-2026-3554, published by CERT-BUND on 23 September 2026 and rated high risk, contains CVE-2026-96365 among 36 identifiers from CVE-2026-96355 to CVE-2026-96398. It covers contributed Drupal projects, so the remediation unit is the module, not the platform. Agencies running many client sites face the same 16-project question multiplied by their portfolio. ...