CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-26032

mediumCVSS 5.4covered by 2 sourcesfirst seen 2026-07-15
A remote, authenticated attacker can exploit a vulnerability in Apache Ivy to manipulate files.

CSIRTS triage

What
A vulnerability allows a remote, authenticated attacker to manipulate files.
Who is affected
Authenticated users of Apache Ivy.
Urgency
Remediation is necessary due to the potential for file manipulation by attackers.
Action
Apply the latest security updates for Apache Ivy.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-26032

Get an email if CVE-2026-26032 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (2)

External references

NVD record for CVE-2026-26032

CVE.org record

Embed the live status

CVE-2026-26032 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-26032 status](https://www.csirts.com/badge/CVE-2026-26032)](https://www.csirts.com/cve/CVE-2026-26032)