NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-25778 The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same sessi... 2026-02-27 7.3 NETWORK HIGH NVD
CVE-2026-25711 The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same sessi... 2026-02-27 7.3 NETWORK HIGH NVD
CVE-2026-25114 The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow... 2026-02-27 7.5 NETWORK HIGH NVD
CVE-2026-25113 The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow... 2026-02-27 7.5 NETWORK HIGH NVD
CVE-2026-24731 WebSocket endpoints lack proper authentication mechanisms, enabling attackers to perform unauthorized station impersonation and manipulate data sent... 2026-02-27 9.4 NETWORK CRITICAL NVD
CVE-2026-22890 Charging station authentication identifiers are publicly accessible via web-based mapping platforms. 2026-02-27 6.5 NETWORK MEDIUM NVD
CVE-2026-20895 The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same sessi... 2026-02-27 7.3 NETWORK HIGH NVD
CVE-2026-20792 The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow... 2026-02-27 7.5 NETWORK HIGH NVD
CVE-2026-20791 Charging station authentication identifiers are publicly accessible via web-based mapping platforms. 2026-02-27 6.5 NETWORK MEDIUM NVD
CVE-2026-20781 WebSocket endpoints lack proper authentication mechanisms, enabling attackers to perform unauthorized station impersonation and manipulate data sent... 2026-02-27 9.4 NETWORK CRITICAL NVD
CVE-2026-20733 Charging station authentication identifiers are publicly accessible via web-based mapping platforms. 2026-02-27 6.5 NETWORK MEDIUM NVD
CVE-2026-1585 An unquoted Windows service executable path vulnerability in IJ Scan Utility for Windows versions 1.1.2 through 1.5.0 may allow a local attacker to ex... 2026-02-27 6.7 LOCAL MEDIUM NVD
CVE-2025-40932 Apache::SessionX versions through 2.01 for Perl create insecure session id. Apache::SessionX generates session ids insecurely. The default session id... 2026-02-27 8.2 NETWORK HIGH NVD
CVE-2026-3268 A vulnerability was detected in psi-probe PSI Probe up to 5.3.0. The affected element is an unknown function of the file psi-probe-core/src/main/java/... 2026-02-26 5.4 NETWORK MEDIUM NVD
CVE-2026-3265 A vulnerability was identified in go2ismail Free-CRM up to b83c40a90726d5e58f0cc680ffdcaa28a03fb5d1. This affects an unknown part of the file /api/Sec... 2026-02-26 6.3 NETWORK MEDIUM NVD