VYPR

thingino-firmware

by Thingino Firmware

CVEs (1)

  • CVE-2026-26213CriMar 26, 2026
    risk 0.64cvss 9.8epss 0.06

    thingino-firmware versions up to the firmware-2026-03-16 release contains an unauthenticated os command injection vulnerability in the WiFi captive portal CGI script that allows remote attackers to execute arbitrary commands as root by injecting malicious code through…