Drupal has released an advisory to address vulnerabilities in Drupal core 8.x versions prior to 8.2.7. A remote attacker could exploit some of these vulnerabilities to take control of an affected system.
US-CERT encourages users and administrators to review Drupal's Security Advisory and apply the necessary update.
Please share your thoughts.
We recently updated our anonymous product survey; we'd welcome your feedback.