SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-71374

CRITICAL · CVSS 9.8 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A deserialization of untrusted data vulnerability in Cosminexus Component Container affects multiple versions, allowing attackers to exploit the flaw to execute arbitrary code or manipulate application behavior. This critical vulnerability, with a CVSS score of 9.8, poses a significant risk to organizations using the affected versions, particularly those in sectors handling sensitive data. Organizations should prioritize immediate patching and mitigation efforts to safeguard their systems against potential exploitation.

CVE
CVE-2026-71374
Severity
CRITICAL
CVSS
9.8
EPSS
0.31%

Original NVD Description

Deserialization of untrusted data vulnerability in Cosminexus Component Container. This issue affects Cosminexus Component Container: from 11-70-01 before 11-70-03, from 11-60 before 11-60-03, from 11-50 through 11-50-03, from 11-40 through 11-40-03, from 11-30 through 11-30-08, from 11-20 before 11-20-10, from 11-10 through 11-10-11, from 11-00 before 11-00-13, from 09-87 before 09-87-10, from 09-80 before 09-80-05, from 09-70 before 09-70-28, from 09-50 through 09-50-22, and from 09-00 through 09-00-18.