Skip to main content

Cybersecurity Weather

Global observatory

← Vulnerabilities

CVE-2026-48027

Nx Nx Console

EPSS 2%KEV

Nx Console contains an embedded malicious code vulnerability that allowed a malicious version of Nx Console to be published. The compromised extension fetched an obfuscated payload that could harvested credentials from multiple sources on disk and in memory.

Published
Last modified
CISA KEV
Yes
Ransomware use
Known

Official sources

CVE-2026-48027 | Cyber Weather Index