VYPR
Unrated severityNVD Advisory· Published Aug 19, 2026

CVE-2026-19505

CVE-2026-19505

Description

Improper cryptographic signature verification in jst_functions.c in RDK-B WebUI rdkb-2025q4-kirkstone.04.10.26 allows a remote attacker to bypass authentication and obtain administrative access via a forged JWT containing an invalid RSA signature.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

1
  • RDK B/WebUIllm-fuzzy
    Range: rdkb-2025q4-kirkstone.04.10.26

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.