SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-71376

CRITICAL · CVSS 9.8 EPSS 0.98%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

The Cosminexus Component Container is vulnerable to an OS command injection flaw that could allow an attacker to execute arbitrary commands on the host system. This critical vulnerability, with a CVSS score of 9.8, poses a significant risk to organizations using affected versions, as it could lead to unauthorized access and control over the application environment. Organizations utilizing any of the specified versions should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-71376
Severity
CRITICAL
CVSS
9.8
EPSS
0.98%

Original NVD Description

OS command injection vulnerability in Cosminexus Component Container. This issue affects Cosminexus Component Container: from 11-70-01 before 11-70-03, from 11-60 before 11-60-03, from 11-50 through 11-50-03, from 11-40 through 11-40-03, from 11-30 through 11-30-08, from 11-20 before 11-20-10, from 11-10 through 11-10-11, from 11-00 before 11-00-13, from 09-87 before 09-87-10, from 09-80 before 09-80-05, from 09-70 before 09-70-28, from 09-50 through 09-50-22, and from 09-00 through 09-00-18.