← Back to the live CVE advisory feed

CVE-2026-77097: Commvault Cloud

Severity
8.8 (HIGH)
Vendor
COMMVAULT
Affected versions
11.46.0 through 11.46.19; 11.44.0 through 11.44.19; 11.40.0 through 11.40.71
Fixed version
11.46.20
Patch status
Patched
Published
2026-09-08T13:17:25.610
Modified
2026-09-08T14:17:27.133

Why it matters

High-severity vulnerability requiring prioritized review.

Recommended admin actions

  • Review and patch based on exposure, asset criticality, and business impact.

Technical summary

Private Metrics Server contained a missing authentication condition affecting metrics upload functionality and service availability. Software customers upgrade to resolved maintenance release. Update Private Metrics Server.

CVE data is sourced from NVD/CNA records and optional enrichment. Validate against the vendor advisory before taking production action.

VULNERABILITY PULSE

LAST UPDATED: SEP 09, 2026 08:00 AM UTC
1881 RECORDS
SECURE FEED ACTIVE
AFFECTED PRODUCT ACTION
CVE-2026-82004
Product identification pending
Reporter: PSIRT
10
CRITICAL
VIEW RECORD
CVE-2026-28659
Product identification pending
Reporter: SECURITY
10
CRITICAL
VIEW RECORD
CVE-2026-49883
Product identification pending
Reporter: SECURITY
10
CRITICAL
VIEW RECORD
CVE-2026-78234
Product identification pending
Reporter: SECALERT
9.9
CRITICAL
VIEW RECORD
CVE-2026-12645
Ivanti Neurons for ITSM PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
9.9
CRITICAL
VIEW RECORD
CVE-2026-12646
Ivanti Neurons for ITSM PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
9.9
CRITICAL
VIEW RECORD
CVE-2026-12647
Ivanti Neurons for ITSM PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
9.9
CRITICAL
VIEW RECORD
CVE-2026-12650
Neurons for ITSM PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
9.9
CRITICAL
VIEW RECORD
CVE-2026-26084
FortiSandbox PaaS
Reporter: PSIRT
9.9
CRITICAL
VIEW RECORD
CVE-2026-83941
Product identification pending
Reporter: SECURE
9.9
CRITICAL
VIEW RECORD
CVE-2026-19232
Product identification pending
Reporter: PSIRT
9.9
CRITICAL
VIEW RECORD
CVE-2026-48273
Product identification pending
Reporter: PSIRT
9.9
CRITICAL
VIEW RECORD
CVE-2026-84869
ScreenConnect
Reporter: 7D616E1A-3288-43B1-A0DD-0A65D3E70A49
9.9
CRITICAL
VIEW RECORD
CVE-2026-86464
Eclipse aeriOS
Reporter: EMO
9.9
CRITICAL
VIEW RECORD
CVE-2026-71374
Product identification pending PATCH
Reporter: HIRT
9.8
CRITICAL
VIEW RECORD
CVE-2026-71376
Product identification pending PATCH
Reporter: HIRT
9.8
CRITICAL
VIEW RECORD
CVE-2026-71377
Product identification pending PATCH
Reporter: HIRT
9.8
CRITICAL
VIEW RECORD
CVE-2026-12744
Neurons for ITSM PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
9.8
CRITICAL
VIEW RECORD
CVE-2026-12745
Neurons for ITSM PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
9.8
CRITICAL
VIEW RECORD
CVE-2026-79576
Product identification pending
Reporter: CVE
9.8
CRITICAL
VIEW RECORD
CVE-2026-79569
Product identification pending
Reporter: CVE
9.8
CRITICAL
VIEW RECORD
CVE-2026-68839
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69276
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69408
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69431
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69463
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69491
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69493
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69496
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69525
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69579
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69586
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69590
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69595
Windows Server 2012
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69715
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69730
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69768
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69769
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69819
Windows 10 Version 1607
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69824
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69829
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69845
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-69910
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-70296
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-72979
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-72982
Windows 10 Version 1607
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-72983
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-73009
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-73010
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-73025
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-77493
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-78445
Windows Server 2012
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-78509
Microsoft 365 Apps for Enterprise
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-78510
365 apps
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-49921
Product identification pending
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-58822
Product identification pending
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-66302
Product identification pending
Reporter: SECURE
9.8
CRITICAL
VIEW RECORD
CVE-2026-65669
Product identification pending
Reporter: SECURE
9.6
CRITICAL
VIEW RECORD
CVE-2026-81376
Product identification pending
Reporter: SECURE
9.6
CRITICAL
VIEW RECORD
CVE-2026-82533
Product identification pending PATCH
Reporter: DISCLOSURE
9.4
CRITICAL
VIEW RECORD
CVE-2026-62645
Product identification pending
Reporter: PRODUCTCERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-62647
Product identification pending
Reporter: PRODUCTCERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-77089
Commvault Cloud PATCH
Reporter: 050066FD-A2F9-4F32-AB5D-4C53F48BC333
9.3
CRITICAL
VIEW RECORD
CVE-2026-61516
NX10
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-86738
Product identification pending PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-69356
Microsoft Exchange Server 2016 Cumulative Update 23
Reporter: SECURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-76200
Product identification pending
Reporter: PSIRT
9.3
CRITICAL
VIEW RECORD
CVE-2026-76201
Product identification pending
Reporter: PSIRT
9.3
CRITICAL
VIEW RECORD
CVE-2026-21102
Product identification pending
Reporter: MOBILE.SECURITY
9.3
CRITICAL
VIEW RECORD
CVE-2026-67367
Product identification pending
Reporter: PRODUCTCERT
9.2
CRITICAL
VIEW RECORD
CVE-2026-82067
Product identification pending
Reporter: CNA
9.2
CRITICAL
VIEW RECORD
CVE-2026-84197
Product identification pending
Reporter: EMO
9.2
CRITICAL
VIEW RECORD
CVE-2026-21095
Product identification pending
Reporter: MOBILE.SECURITY
9.2
CRITICAL
VIEW RECORD
CVE-2026-21096
Product identification pending
Reporter: MOBILE.SECURITY
9.2
CRITICAL
VIEW RECORD
CVE-2026-62646
Product identification pending
Reporter: PRODUCTCERT
9.1
CRITICAL
VIEW RECORD
CVE-2026-73309
Product identification pending PATCH
Reporter: DISCLOSURE
9.1
CRITICAL
VIEW RECORD
CVE-2026-73311
Product identification pending PATCH
Reporter: DISCLOSURE
9.1
CRITICAL
VIEW RECORD
CVE-2026-73312
Product identification pending PATCH
Reporter: DISCLOSURE
9.1
CRITICAL
VIEW RECORD
CVE-2026-86729
AVideo
Reporter: DISCLOSURE
9.1
CRITICAL
VIEW RECORD
CVE-2026-75156
Product identification pending PATCH
Reporter: SECURITY
9.1
CRITICAL
VIEW RECORD
CVE-2026-69641
Microsoft Exchange Server 2016 Cumulative Update 23
Reporter: SECURE
9.1
CRITICAL
VIEW RECORD
CVE-2026-75746
Product identification pending
Reporter: PSIRT
9.1
CRITICAL
VIEW RECORD
CVE-2026-53939
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-69854
Spring Cloud Azure
Reporter: SECURE
9
CRITICAL
VIEW RECORD
CVE-2026-85982
Auth0 AD/LDAP Connector
Reporter: PSIRT
9
CRITICAL
VIEW RECORD
CVE-2026-53581
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9
CRITICAL
VIEW RECORD
CVE-2026-50093
Product identification pending
Reporter: PRODUCTCERT
8.9
HIGH
VIEW RECORD
CVE-2026-16502
Live Composer – Free WordPress Website Builder
Reporter: SECURITY
8.8
HIGH
VIEW RECORD
CVE-2026-77097
Commvault Cloud PATCH
Reporter: 050066FD-A2F9-4F32-AB5D-4C53F48BC333
8.8
HIGH
VIEW RECORD
CVE-2026-77098
Commvault Cloud PATCH
Reporter: 050066FD-A2F9-4F32-AB5D-4C53F48BC333
8.8
HIGH
VIEW RECORD
CVE-2026-79376
Product identification pending
Reporter: CVE
8.8
HIGH
VIEW RECORD
CVE-2026-12648
Neurons for ITSM PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
8.8
HIGH
VIEW RECORD
CVE-2026-12651
Neurons for ITSM PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
8.8
HIGH
VIEW RECORD
CVE-2026-18851
Endpoint Manager Mobile PATCH
Reporter: 3C1D8AA1-5A33-4EA4-8992-AADD6440AF75
8.8
HIGH
VIEW RECORD
CVE-2026-62706
Product identification pending
Reporter: SECURE
8.8
HIGH
VIEW RECORD
CVE-2026-62744
Product identification pending
Reporter: SECURE
8.8
HIGH
VIEW RECORD
CVE-2026-62895
Product identification pending
Reporter: SECURE
8.8
HIGH
VIEW RECORD
CVE-2026-65772
Product identification pending
Reporter: SECURE
8.8
HIGH
VIEW RECORD
CVE-2026-66814
Product identification pending
Reporter: SECURE
8.8
HIGH
VIEW RECORD
CVE-2026-66818
Product identification pending
Reporter: SECURE
8.8
HIGH
VIEW RECORD

About the Vulnerability Pulse CVE Feed

The Vulnerability Pulse feed tracks live CVE advisories sourced from the National Vulnerability Database and vendor security disclosures. It is designed for SOC analysts, IT administrators, and security teams who need a fast, filterable view of current vulnerabilities without digging through raw NVD data.

How to Use the CVE Advisory Tracker

Use the severity filters to narrow results to Critical or High priority vulnerabilities. Filter by vendor to focus on software and hardware relevant to your environment. Export to CSV for reporting, ticketing, or patch prioritization workflows.

What Is a CVE Advisory?

A CVE (Common Vulnerabilities and Exposures) advisory is a public disclosure of a security vulnerability assigned a unique identifier by MITRE. Advisories include severity scores (CVSS), affected versions, and remediation guidance. Monitoring CVE advisories is a core function of vulnerability management programs and SOC operations.

CVE Analysis & Writeups

For in-depth analysis of specific vulnerabilities, visit the IT Knowledge Bases blog for CVE breakdowns, exploitation analysis, and remediation guidance written for security practitioners.