{"id":40014,"date":"2026-06-10T13:10:05","date_gmt":"2026-06-10T13:10:05","guid":{"rendered":"https:\/\/fidelissecurity.com\/?post_type=vulnerabilities&#038;p=40014"},"modified":"2026-06-11T17:16:08","modified_gmt":"2026-06-11T17:16:08","slug":"cve-2026-48027","status":"publish","type":"vulnerabilities","link":"https:\/\/fidelissecurity.com\/es\/vulnerabilities\/cve-2026-48027\/","title":{"rendered":"CVE-2026-48027"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"40014\" class=\"elementor elementor-40014\" data-elementor-settings=\"{&quot;ha_cmc_init_switcher&quot;:&quot;no&quot;}\" data-elementor-post-type=\"vulnerabilities\">\n\t\t\t\t<div class=\"elementor-element elementor-element-10f184a e-ecs-flex e-flex e-con-boxed e-con e-parent\" data-id=\"10f184a\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;ecs_container_type&quot;:&quot;flex&quot;,&quot;_ha_eqh_enable&quot;:false}\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-0e2ebbc elementor-widget elementor-widget-heading\" data-id=\"0e2ebbc\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"summary\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Summary<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0352243 elementor-widget elementor-widget-text-editor\" data-id=\"0352243\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span class=\"NormalTextRun SCXW81503934 BCX8\">CVE-2026-48027 is a critical supply chain security incident affecting\u00a0<\/span><span class=\"NormalTextRun SpellingErrorV2Themed SCXW81503934 BCX8\">Nx<\/span><span class=\"NormalTextRun SCXW81503934 BCX8\">\u00a0Console version 18.95.0. A malicious build of the extension was briefly published to the Visual Studio Marketplace and\u00a0<\/span><span class=\"NormalTextRun SpellingErrorV2Themed SCXW81503934 BCX8\">OpenVSX<\/span><span class=\"NormalTextRun SCXW81503934 BCX8\">\u00a0on May 19, 2026, before being removed. The compromised release\u00a0<\/span><span class=\"NormalTextRun SCXW81503934 BCX8\">contained<\/span><span class=\"NormalTextRun SCXW81503934 BCX8\"> embedded malicious code capable of collecting credentials, tokens, and other sensitive information from developer systems and transmitting the data externally. The issue is limited to version 18.95.0, while version 18.100.0 and later releases are not affected.<\/span><\/p><p><span class=\"NormalTextRun SCXW81503934 BCX8\">Due to confirmed exploitation in the wild and the potential exposure of development environments, organizations should take immediate <a href=\"https:\/\/fidelissecurity.com\/use-case\/automated-vulnerability-remediation\/\">remediation<\/a> measures<\/span><span class=\"NormalTextRun SCXW81503934 BCX8\">.<\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0b3f860 elementor-widget elementor-widget-heading\" data-id=\"0b3f860\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"actions-required\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Urgent Actions Required<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-8e58d2d elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"8e58d2d\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-check-square\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Upgrade Nx Console to version 18.100.0 or later immediately.<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-check-square\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Remove any installation of the compromised version 18.95.0.<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-check-square\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Review the vendor's indicators of compromise (IOCs) to determine whether affected systems installed the malicious release during the exposure window. <\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-check-square\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Terminate any identified malicious processes and remove associated persistence artifacts.<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-check-square\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Rotate credentials, access tokens, secrets, and SSH keys that may have been exposed. <\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-check-square\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Review source code repositories, development assets, and build artifacts for signs of unauthorized access, modification, or <a href=\"https:\/\/fidelissecurity.com\/threatgeek\/data-protection\/data-exfiltration\/\">data exfiltration<\/a>.<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-e6059c5 elementor-widget elementor-widget-heading\" data-id=\"e6059c5\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"vulnerable-systems\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Which Systems Are Vulnerable to\u202fCVE-2026-48027?<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-91f5818 elementor-widget elementor-widget-heading\" data-id=\"91f5818\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Technical Overview\u202f<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-d261fe2 elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"d261fe2\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\"><b>Vulnerability Type:<\/b>\u202fEmbedded Malicious Code (CWE-506)<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\"><b>Affected Software\/Versions:<\/b> <ul> <li>Nx Console version 18.95.0 <\/li><\/ul><\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\"><b>CVSS Vector:\u202fv3.1<\/b> <ul> <li>Attack Vector: Network (WebSocket)<\/li> <li>Attack Complexity: Low<\/li> <li>Privileges Required: None<\/li> <li>User Interaction: None<\/li> <li>Scope: Unchanged<\/li> <li>Confidentiality Impact: High<\/li> <li>Integrity Impact: High<\/li> <li>Availability Impact: High<\/li><\/ul><\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\"><b>Patch Availability:<\/b>\u202fYes, available\u202f<ol> <li><a href=\"https:\/\/nx.dev\/blog\/nx-console-v18-95-0-postmortem\" target=\"_blank\" rel=\"noopener nofollow noreferrer\">Postmortem: Nx Console v18.95.0 supply-chain compromise | Nx Blog<\/a><\/li> <li><a href=\"https:\/\/github.com\/nrwl\/nx-console\/security\/advisories\/GHSA-c9j4-9m59-847w\" target=\"_blank\" rel=\"noopener nofollow noreferrer\">Compromised Nx Console version 18.95.0 \u00b7 Advisory \u00b7 nrwl\/nx-console \u00b7 GitHub<\/a><\/li><\/ol><\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-759b53d elementor-widget elementor-widget-heading\" data-id=\"759b53d\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"exploitation-path\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">How Does the\u202fCVE-2026-48027 Exploit Work?<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0e9e9cb elementor-widget elementor-widget-text-editor\" data-id=\"0e9e9cb\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span class=\"TextRun SCXW89133380 BCX8\" lang=\"EN-IN\" xml:lang=\"EN-IN\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW89133380 BCX8\">The attack typically follows these steps:<\/span><\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-2b05bab elementor-widget elementor-widget-image\" data-id=\"2b05bab\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<img fetchpriority=\"high\" decoding=\"async\" width=\"1864\" height=\"2560\" src=\"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-scaled.webp\" class=\"attachment-full size-full wp-image-40015\" alt=\"CVE-2026-48027\" srcset=\"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-scaled.webp 1864w, https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-218x300.webp 218w, https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-746x1024.webp 746w, https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-768x1055.webp 768w, https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-1119x1536.webp 1119w, https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-1491x2048.webp 1491w\" sizes=\"(max-width: 1864px) 100vw, 1864px\" \/>\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a93a1eb elementor-widget elementor-widget-heading\" data-id=\"a93a1eb\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"root-cause\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">What Causes\u202fCVE-2026-48027?<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-7275c12 elementor-widget elementor-widget-text-editor\" data-id=\"7275c12\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><strong>Vulnerability Root Cause:\u202f<\/strong><\/p><p>CVE-2026-48027 originated from a compromised release of the Nx Console extension. A malicious version, 18.95.0, was published to official extension marketplaces and contained embedded malicious code. When installed and activated, the compromised extension could collect credentials, tokens, and other sensitive information from affected developer systems.<\/p><p>The issue is classified as CWE-506: Embedded Malicious Code, reflecting the inclusion of unauthorized functionality within a trusted software component.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-496d048 e-ecs-flex e-flex e-con-boxed e-con e-parent\" data-id=\"496d048\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;ecs_container_type&quot;:&quot;flex&quot;,&quot;_ha_eqh_enable&quot;:false}\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-e1e32da elementor-widget elementor-widget-heading\" data-id=\"e1e32da\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"mitigation\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">How Can You Mitigate\u202fCVE-2026-48027?<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-4f81845 elementor-widget elementor-widget-text-editor\" data-id=\"4f81845\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><em><strong>If immediate patching is delayed or not possible:\u202f<\/strong><\/em><\/p><ul><li>Identify and remove Nx Console version 18.95.0 from affected systems.<\/li><li>Review vendor-provided indicators of compromise (IOCs) to determine whether the malicious release was installed.<\/li><li>Check systems for known persistence artifacts and suspicious processes associated with the compromise.<\/li><li>Rotate credentials, tokens, secrets, and SSH keys that may have been accessible from affected machines.<\/li><li>Inspect source code repositories, development assets, and build outputs for <a href=\"https:\/\/fidelissecurity.com\/cybersecurity-101\/data-protection\/prevent-unauthorized-access\/\">signs of unauthorized access<\/a> or data exposure.<\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-048e63e elementor-widget elementor-widget-heading\" data-id=\"048e63e\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"asset-and-systems-risk\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Which Assets and Systems Are at Risk?<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a622920 elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"a622920\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\"><b>Asset Types Affected:<\/b> <ul> <li>Nx Console Installations - Systems running the compromised Nx Console version 18.95.0.<\/li> <li>Developer Workstations - Machines where the affected extension was installed and activated.<\/li> <li>Development Environments - Local environments used for software development with Nx Console.<\/li><\/ul><\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\"><b>Business-Critical Systems at Risk:<\/b> <ul> <li>Source Code Repositories - Credentials harvested from affected systems could expose repository access.<\/li> <li>Cloud and Development Resources - Tokens and secrets accessible from compromised machines may be exposed.<\/li> <li>Build Assets - Development artifacts and related resources may require review for unauthorized access or tampering.<\/li><\/ul><\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\"><b>Exposure Level:<\/b> <ul> <li>Systems Running Nx Console 18.95.0 - Organizations that installed the compromised release during the exposure window are at risk.<\/li> <li>Developer Machines with Accessible Credentials or Secrets - Systems containing tokens, keys, or other sensitive information may be impacted.<\/li><\/ul><\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-ebd4fd9 elementor-widget elementor-widget-heading\" data-id=\"ebd4fd9\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"patching\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Will Patching\u202fCVE-2026-48027 Cause Downtime?<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-d3ff488 elementor-widget elementor-widget-text-editor\" data-id=\"d3ff488\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><strong>Patch application impact:<\/strong>\u202fLow. Upgrade Nx Console to version 18.100.0 or later and remove version 18.95.0. Review affected systems for indicators of compromise.<\/p><p><strong>Mitigation (if immediate patching is not possible):\u202f<\/strong>Remove version 18.95.0, check for indicators of compromise, delete persistence artifacts, and rotate exposed credentials and secrets.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-16d5fc0 elementor-widget elementor-widget-heading\" data-id=\"16d5fc0\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"detection\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">How Can You Detect\u202fCVE-2026-48027 Exploitation?<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f619cf7 elementor-widget elementor-widget-heading\" data-id=\"f619cf7\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Indicators of Compromise (IOCs\/IOAs):<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-4912b8f elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"4912b8f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Installation of Nx Console version 18.95.0 during the exposure window. <\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Presence of files such as cat.py, .gh_update_state, bun.exe, or kitty-* artifacts. <\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Running processes associated with cat.py or the __DAEMONIZED=1 environment variable.<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-221fc5e elementor-widget elementor-widget-heading\" data-id=\"221fc5e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Behavioral\u202fIndicators:\u202f<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f737893 elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"f737893\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Unexpected credential or token access from developer systems.<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Unauthorized collection or transmission of sensitive data from affected machines. <\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-1ccf3cc elementor-widget elementor-widget-heading\" data-id=\"1ccf3cc\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"remediation-response\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Remediation &amp; Response<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-839aa54 elementor-widget-laptop__width-initial elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"839aa54\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<i aria-hidden=\"true\" class=\"fas fa-long-arrow-alt-right\"><\/i>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\"><b>Incident Response Considerations:<\/b> <ul> <li>Upgrade Nx Console to version 18.100.0 or later.<\/li> <li>Remove any installation of version 18.95.0.<\/li> <li>Review vendor-provided indicators of compromise (IOCs).<\/li> <li>Remove identified persistence artifacts and stop associated processes.<\/li> <li>Rotate potentially exposed credentials, tokens, secrets, and SSH keys.<\/li> <li>Review source code repositories, development assets, and build artifacts for unauthorized access or data exposure.<\/li> <\/ul><\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-9cf1f94 content-align-cta-default elementor-widget elementor-widget-eael-cta-box\" data-id=\"9cf1f94\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"eael-cta-box.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"eael-call-to-action cta-basic bg-lite cta-preset-1\">\n        <h4 class=\"title eael-cta-heading\"><span class=\"eael-cta-title-text elementor-repeater-item-ba8b47d\">See More. Detect Faster.<\/span> <span class=\"eael-cta-title-text elementor-repeater-item-581abbc\">Respond Smarter with<\/span> <span class=\"eael-cta-title-text elementor-repeater-item-e8718a5\">Fidelis NDR<\/span> <\/h4><ul style=\"color: #ffffff\">\n \t<li style=\"list-style-type: none\">\n<ul style=\"color: #ffffff\">\n \t<li style=\"list-style-type: none\">\n<ul style=\"color: #ffffff\">\n \t<li>Full visibility across network traffic and encrypted communications <\/li>\n \t<li>Automated threat detection, hunting, and malware analysis<\/li>\n \t<li>Integrated DLP, forensics, sandboxing, and threat intelligence<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/li>\n<\/ul><a href=\"https:\/\/fidelissecurity.com\/resource\/datasheet\/sandbox\/\" class=\"cta-button cta-preset-1  \">Download the Data Sheet<\/a>\t<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-6753ae5c e-ecs-flex e-flex e-con-boxed e-con e-parent\" data-id=\"6753ae5c\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;ecs_container_type&quot;:&quot;flex&quot;,&quot;_ha_eqh_enable&quot;:false}\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-9cc6dc7 elementor-widget elementor-widget-heading\" data-id=\"9cc6dc7\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"cvss-breakdown-table\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">CVSS Breakdown Table\u202f<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-76c57f0 elementor-widget elementor-widget-Table\" data-id=\"76c57f0\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"Table.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<table class=\"tafe-table \">\n\t\t\t<thead  class=\"tafe-table-header\">\n\t\t\t\t<tr>\n\t\t\t\t\t<th class=\"elementor-inline-editing elementor-repeater-item-58d4a4b\"   >Metric<\/th><th class=\"elementor-inline-editing elementor-repeater-item-5df925d\"   >Value\u202f<\/th><th class=\"elementor-inline-editing elementor-repeater-item-1a6f993\"   >Description<\/th>\t\t\t\t<\/tr>\n\t\t\t<\/thead>\n\t\t\t\t\t\t<tbody class=\"tafe-table-body\">\n\t\t\t\t<tr>\n\t\t\t\t\t<td data-label=\"Metric\"   class=\"elementor-repeater-item-480a869 td-content-type-default\" >Base Score<\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-ff1827d td-content-type-default\" >9.8<\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-5024640 td-content-type-default\" >Critical vulnerability with significant impact on affected systems. <\/td><\/tr><tr><td data-label=\"Metric\"   class=\"elementor-repeater-item-1ddd412 td-content-type-default\" >Attack Vector<\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-bbd7e7e td-content-type-default\" >Network\u202f\u202f <\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-4a0a1fd td-content-type-default\" >The compromised extension was distributed through online extension marketplaces. <\/td><\/tr><tr><td data-label=\"Metric\"   class=\"elementor-repeater-item-6c597f3 td-content-type-default\" >Attack Complexity<\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-ed0abd9 td-content-type-default\" >Low<\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-7a9fabf td-content-type-default\" >Exploitation does not require complex conditions. <\/td><\/tr><tr><td data-label=\"Metric\"   class=\"elementor-repeater-item-91f8a20 td-content-type-default\" >Privileges Required<\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-5531257 td-content-type-default\" >None<\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-7e3c677 td-content-type-default\" >No privileges are required to obtain the compromised extension. <\/td><\/tr><tr><td data-label=\"Metric\"   class=\"elementor-repeater-item-2a08640 td-content-type-default\" >User Interaction <\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-ba738dd td-content-type-default\" >None<\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-86ba742 td-content-type-default\" >CVSS scoring assigns no user interaction requirement. <\/td><\/tr><tr><td data-label=\"Metric\"   class=\"elementor-repeater-item-83d4b57 td-content-type-default\" >Scope <\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-a033634 td-content-type-default\" >Unchanged <\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-2f5ca21 td-content-type-default\" >Impact remains within the affected component. <\/td><\/tr><tr><td data-label=\"Metric\"   class=\"elementor-repeater-item-9e69ec2 td-content-type-default\" >Confidentiality Impact <\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-60a205a td-content-type-default\" >High<\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-b6f0509 td-content-type-default\" >Sensitive credentials, tokens, and secrets may be exposed. <\/td><\/tr><tr><td data-label=\"Metric\"   class=\"elementor-repeater-item-9f056c9 td-content-type-default\" >Integrity Impact <\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-1a6b266 td-content-type-default\" >High<\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-4e63a19 td-content-type-default\" >Malicious code can affect the integrity of the development environment. <\/td><\/tr><tr><td data-label=\"Metric\"   class=\"elementor-repeater-item-d664870 td-content-type-default\" >Availability Impact<\/td><td data-label=\"Value\u202f\"   class=\"elementor-repeater-item-bfc0d04 td-content-type-default\" >High<\/td><td data-label=\"Description\"   class=\"elementor-repeater-item-6066841 td-content-type-default\" >The compromised extension can adversely affect systems. <\/td>\t\t\t\t<\/tr>\n\t\t\t<\/tbody>\n\t\t<\/table>\n\t\t\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-29f0fef e-ecs-flex e-flex e-con-boxed e-con e-parent\" data-id=\"29f0fef\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;ecs_container_type&quot;:&quot;flex&quot;,&quot;_ha_eqh_enable&quot;:false}\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-fd79500 elementor-widget elementor-widget-heading\" data-id=\"fd79500\" data-element_type=\"widget\" data-e-type=\"widget\" id=\"resources\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<p class=\"elementor-heading-title elementor-size-default\">References:<\/p>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-3bdf004 elementor-widget elementor-widget-text-editor\" data-id=\"3bdf004\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ol>\n \t<li><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2026-48027\" target=\"_blank\" rel=\"noopener nofollow noreferrer\">NVD &#8211; CVE-2026-48027<\/a><\/li>\n \t<li><a href=\"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-48027\" target=\"_blank\" rel=\"noopener nofollow noreferrer\">CVE Record: CVE-2026-48027<\/a><\/li>\n<\/ol>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>CVE-2026-48027 is a critical supply-chain flaw in Nx Console v18.95.0 that steals developer credentials. Upgrade to v18.100.0 immediately.<\/p>\n","protected":false},"featured_media":40015,"template":"","severity":[1483],"vuln_year":[1524],"class_list":["post-40014","vulnerabilities","type-vulnerabilities","status-publish","has-post-thumbnail","hentry","severity-critical","vuln_year-1524"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>CVE-2026-48027: Nx Console Supply-Chain Vulnerability | Fidelis Security<\/title>\n<meta name=\"description\" content=\"CVE-2026-48027 is a critical supply-chain flaw in Nx Console v18.95.0 that steals developer credentials. Upgrade to v18.100.0 immediately.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/fidelissecurity.com\/es\/vulnerabilities\/cve-2026-48027\/\" \/>\n<meta property=\"og:locale\" content=\"es_ES\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"CVE-2026-48027: Nx Console Supply-Chain Vulnerability | Fidelis Security\" \/>\n<meta property=\"og:description\" content=\"CVE-2026-48027 is a critical supply-chain flaw in Nx Console v18.95.0 that steals developer credentials. Upgrade to v18.100.0 immediately.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/\" \/>\n<meta property=\"og:site_name\" content=\"Fidelis Security\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/fideliscyber\/\" \/>\n<meta property=\"article:modified_time\" content=\"2026-06-11T17:16:08+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-scaled.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1864\" \/>\n\t<meta property=\"og:image:height\" content=\"2560\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/webp\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@FidelisCyber\" \/>\n<meta name=\"twitter:label1\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data1\" content=\"4 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/vulnerabilities\\\/cve-2026-48027\\\/\",\"url\":\"https:\\\/\\\/fidelissecurity.com\\\/vulnerabilities\\\/cve-2026-48027\\\/\",\"name\":\"CVE-2026-48027: Nx Console Supply-Chain Vulnerability | Fidelis Security\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/vulnerabilities\\\/cve-2026-48027\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/vulnerabilities\\\/cve-2026-48027\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/fidelissecurity.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/CVE-2026-48027-01-scaled.webp\",\"datePublished\":\"2026-06-10T13:10:05+00:00\",\"dateModified\":\"2026-06-11T17:16:08+00:00\",\"description\":\"CVE-2026-48027 is a critical supply-chain flaw in Nx Console v18.95.0 that steals developer credentials. Upgrade to v18.100.0 immediately.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/vulnerabilities\\\/cve-2026-48027\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/fidelissecurity.com\\\/vulnerabilities\\\/cve-2026-48027\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/vulnerabilities\\\/cve-2026-48027\\\/#primaryimage\",\"url\":\"https:\\\/\\\/fidelissecurity.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/CVE-2026-48027-01-scaled.webp\",\"contentUrl\":\"https:\\\/\\\/fidelissecurity.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/CVE-2026-48027-01-scaled.webp\",\"width\":1864,\"height\":2560,\"caption\":\"CVE-2026-48027\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/vulnerabilities\\\/cve-2026-48027\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Vulnerabilities\",\"item\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/vulnerabilities\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"CVE-2026-48027\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/#website\",\"url\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/\",\"name\":\"Fidelis Security\",\"description\":\"Unified Threat Detection and Response Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/#organization\"},\"alternateName\":\"Fidelis\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/#organization\",\"name\":\"Fidelis Security\",\"alternateName\":\"Fidelis\",\"url\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/fidelissecurity.com\\\/wp-content\\\/uploads\\\/2024\\\/08\\\/Fidelis-Security-Logo-SVG.svg\",\"contentUrl\":\"https:\\\/\\\/fidelissecurity.com\\\/wp-content\\\/uploads\\\/2024\\\/08\\\/Fidelis-Security-Logo-SVG.svg\",\"width\":500,\"height\":500,\"caption\":\"Fidelis Security\"},\"image\":{\"@id\":\"https:\\\/\\\/fidelissecurity.com\\\/es\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/fideliscyber\\\/\",\"https:\\\/\\\/x.com\\\/FidelisCyber\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/fideliscybersecurity\",\"https:\\\/\\\/www.youtube.com\\\/c\\\/FidelisCybersecurity\",\"https:\\\/\\\/www.gartner.com\\\/reviews\\\/market\\\/network-detection-and-response\\\/vendor\\\/fidelis-security\",\"https:\\\/\\\/www.g2.com\\\/sellers\\\/fidelis-cybersecurity#profiles\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"CVE-2026-48027: Nx Console Supply-Chain Vulnerability | Fidelis Security","description":"CVE-2026-48027 is a critical supply-chain flaw in Nx Console v18.95.0 that steals developer credentials. Upgrade to v18.100.0 immediately.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/fidelissecurity.com\/es\/vulnerabilities\/cve-2026-48027\/","og_locale":"es_ES","og_type":"article","og_title":"CVE-2026-48027: Nx Console Supply-Chain Vulnerability | Fidelis Security","og_description":"CVE-2026-48027 is a critical supply-chain flaw in Nx Console v18.95.0 that steals developer credentials. Upgrade to v18.100.0 immediately.","og_url":"https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/","og_site_name":"Fidelis Security","article_publisher":"https:\/\/www.facebook.com\/fideliscyber\/","article_modified_time":"2026-06-11T17:16:08+00:00","og_image":[{"width":1864,"height":2560,"url":"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-scaled.webp","type":"image\/webp"}],"twitter_card":"summary_large_image","twitter_site":"@FidelisCyber","twitter_misc":{"Tiempo de lectura":"4 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/fidelissecurity.com\/es\/vulnerabilities\/cve-2026-48027\/","url":"https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/","name":"CVE-2026-48027: Nx Console Supply-Chain Vulnerability | Fidelis Security","isPartOf":{"@id":"https:\/\/fidelissecurity.com\/es\/#website"},"primaryImageOfPage":{"@id":"https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/#primaryimage"},"image":{"@id":"https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/#primaryimage"},"thumbnailUrl":"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-scaled.webp","datePublished":"2026-06-10T13:10:05+00:00","dateModified":"2026-06-11T17:16:08+00:00","description":"CVE-2026-48027 is a critical supply-chain flaw in Nx Console v18.95.0 that steals developer credentials. Upgrade to v18.100.0 immediately.","breadcrumb":{"@id":"https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/#primaryimage","url":"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-scaled.webp","contentUrl":"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2026\/06\/CVE-2026-48027-01-scaled.webp","width":1864,"height":2560,"caption":"CVE-2026-48027"},{"@type":"BreadcrumbList","@id":"https:\/\/fidelissecurity.com\/vulnerabilities\/cve-2026-48027\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/fidelissecurity.com\/es\/"},{"@type":"ListItem","position":2,"name":"Vulnerabilities","item":"https:\/\/fidelissecurity.com\/es\/vulnerabilities\/"},{"@type":"ListItem","position":3,"name":"CVE-2026-48027"}]},{"@type":"WebSite","@id":"https:\/\/fidelissecurity.com\/es\/#website","url":"https:\/\/fidelissecurity.com\/es\/","name":"Fidelis Security","description":"Unified Threat Detection and Response Platform","publisher":{"@id":"https:\/\/fidelissecurity.com\/es\/#organization"},"alternateName":"Fidelis","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/fidelissecurity.com\/es\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/fidelissecurity.com\/es\/#organization","name":"Fidelis Security","alternateName":"Fidelis","url":"https:\/\/fidelissecurity.com\/es\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/fidelissecurity.com\/es\/#\/schema\/logo\/image\/","url":"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2024\/08\/Fidelis-Security-Logo-SVG.svg","contentUrl":"https:\/\/fidelissecurity.com\/wp-content\/uploads\/2024\/08\/Fidelis-Security-Logo-SVG.svg","width":500,"height":500,"caption":"Fidelis Security"},"image":{"@id":"https:\/\/fidelissecurity.com\/es\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/fideliscyber\/","https:\/\/x.com\/FidelisCyber","https:\/\/www.linkedin.com\/company\/fideliscybersecurity","https:\/\/www.youtube.com\/c\/FidelisCybersecurity","https:\/\/www.gartner.com\/reviews\/market\/network-detection-and-response\/vendor\/fidelis-security","https:\/\/www.g2.com\/sellers\/fidelis-cybersecurity#profiles"]}]}},"_links":{"self":[{"href":"https:\/\/fidelissecurity.com\/es\/wp-json\/wp\/v2\/vulnerabilities\/40014","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/fidelissecurity.com\/es\/wp-json\/wp\/v2\/vulnerabilities"}],"about":[{"href":"https:\/\/fidelissecurity.com\/es\/wp-json\/wp\/v2\/types\/vulnerabilities"}],"version-history":[{"count":0,"href":"https:\/\/fidelissecurity.com\/es\/wp-json\/wp\/v2\/vulnerabilities\/40014\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/fidelissecurity.com\/es\/wp-json\/wp\/v2\/media\/40015"}],"wp:attachment":[{"href":"https:\/\/fidelissecurity.com\/es\/wp-json\/wp\/v2\/media?parent=40014"}],"wp:term":[{"taxonomy":"severity","embeddable":true,"href":"https:\/\/fidelissecurity.com\/es\/wp-json\/wp\/v2\/severity?post=40014"},{"taxonomy":"vuln_year","embeddable":true,"href":"https:\/\/fidelissecurity.com\/es\/wp-json\/wp\/v2\/vuln_year?post=40014"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}