Critical Flaws in XCharge C6 EV Charging Controllers Allow Remote Code Execution
CISA warns of three vulnerabilities in XCharge C6 EV charging controllers, including a critical firmware integrity bypass (CVE-2026-9037, CVSS 9.8) that allows unauthenticated remote code execution.