Searchlight Cyber
searchlight-cyber · B · active
https://slcyber.io/research-center/
Discovered on 2026-05-23 via Drupal CVE-2026-9082 coverage, published same-day technical analysis 'Keys to the Kingdom: Anonymous SQL Injection in Drupal Core CVE-2026-9082' (slcyber.io/research-center/keys-to-the-kingdom-anonymous-sql-injection-in-drupal-core-cve-2026-9082/) used as corroborating source by both S2 and S3 sub-agents. Candidate; promote to active after 3 runs with content contribution. | 2026-06-20 full audit (v2.62): live=Y, drill=Y. FETCH → webfetch https://slcyber.io/research-center/ (listing) then webfetch per-article URL for body. AVOID: Listing page does not render per-item publication dates to WebFetch, get the date from the article page itself. Low/sporadic cadence (vuln-research drops, not a daily feed).. | 2026-07-05 admiralty audit: B, original vuln research, high quality; keep candidate (sporadic drops, only one documented run contribution so far, promote once it clears the 3-contribution bar). | 2026-07-18 weekly audit: contributed primary content again (WP2Shell CVE-2026-63030/-60137 discoverer write-up, cited primary on the audit-recovered entry); second documented contributing run toward the 3-run activation bar. | 2026-07-26 weekly quality audit: promoted candidate → active on the documented lifecycle bar (cited by published entries from 4 distinct runs; the bar is 3). The promotion had never been executed because nothing counted contributing runs, the digest now emits sources.promotion_due (tools/run_summary.py). | 2026-10-02 (2026-10-02T0404Z-intel): https://slcyber.io/research-center/ extracts only the Labs philosophy text (page date 2026-09-07) and no article list by extract or raw fetch; may need a sitemap or a site: WebSearch probe.
Cited in 3 entries
Citation cadence
Citation days per ISO week (9 weeks of coverage span, total 3).
- WP2Shell: pre-auth RCE chain in stock WordPress core (CVE-2026-63030 + CVE-2026-60137), out-of-band 7.0.2 patch, exploited within days and KEV-listed2026-07-18
- CVE-2026-6875, ServiceNow AI Platform sandbox escape lets an unauthenticated request execute code on the platform (CVSS 9.5)2026-07-13
- Drupal core "highly critical" pre-patch warning, unauthenticated, zero-complexity, patch window today 17:00–21:00 UTC2026-05-20