Skip to content
Threat Feed

Vendor

Nx

5 briefs RSS
high threat

OS Command Injection in Nx via Git Revisions and Remote Refs

The Nx build system contains OS command injection vulnerabilities in `nx affected` and `nx import` commands, allowing attackers to execute arbitrary code via malicious git revision strings or remote branch names.

exploited nx +2 command-injection build-system ci-cd remote-code-execution vulnerability local-exploitation privilege-escalation
2t
high threat

OS Command Injection in @nx/docker Release Pipeline

The @nx/docker package is vulnerable to OS command injection via insecure shell command construction, allowing arbitrary command execution during release processes through malicious configuration inputs.

exploited @nx/docker
1t 1c
high advisory

Zip-Slip Vulnerability in Nx Self-Hosted Remote Cache

A Zip-Slip vulnerability in the Nx self-hosted HTTP remote cache allows a malicious cache server to write files to arbitrary locations on a client machine, leading to potential remote code execution.

nx +8
1t
high advisory

Nx Console Compromised Extension Harvesting Credentials (CVE-2026-48027)

Nx Console contained an embedded malicious code vulnerability (CVE-2026-48027) which allowed a malicious version of the extension to be published and harvest credentials from disk and memory.

Nx Console supply-chain credential-theft cve
2r 1t 1c
high advisory

DNS Kerberos Coercion Attempt Detection

This brief details the detection of DNS-based Kerberos coercion attacks, where adversaries inject marshaled credential structures into DNS records to spoof SPNs and redirect authentication, as seen in CVE-2025-33073, using Suricata and Sysmon event ID 22.

PoC Fortinet edge appliances +38 kerberos coercion dns cve-2025-33073
3r 3t 4c 4i updated