Medium severity6.3NVD Advisory· Published Apr 8, 2026· Updated Apr 16, 2026
CVE-2026-5302
CVE-2026-5302
Description
CORS misconfiguration in CoolerControl/coolercontrold <4.0.0 allows unauthenticated remote attackers to read data and send commands to the service via malicious websites
Affected products
2cpe:2.3:a:coolercontrol:coolercontrold:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:coolercontrol:coolercontrold:*:*:*:*:*:*:*:*range: <4.0.0
- (no CPE)range: <4.0.0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.