Critical1
High2
Medium0
Exploited (KEV)0
All recent CVEs
| CVE | CVSS | Severity | Product | Summary | Published |
|---|---|---|---|---|---|
| CVE-2026-25192 | 9.4 | critical | charge portal | WebSocket endpoints lack proper authentication mechanisms, enabling attackers to perform unauthorized station impe | 169d ago |
| CVE-2026-31904 | 7.5 | high | charge portal | The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. | 169d ago |
| CVE-2026-27649 | 7.3 | high | charge portal | The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoin | 169d ago |