Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
8.1
CVE-2026-5302
- EPSS 0.26%
- Veröffentlicht 08.04.2026 12:05:06
- Zuletzt bearbeitet 24.07.2026 20:10:00
CORS misconfiguration in CoolerControl/coolercontrold <4.0.0 allows unauthenticated remote attackers to read data and send commands to the service via malicious websites
9.1
CVE-2026-5300
- EPSS 0.22%
- Veröffentlicht 08.04.2026 12:04:56
- Zuletzt bearbeitet 24.07.2026 20:10:00
Unauthenticated functionality in CoolerControl/coolercontrold <4.0.0 allows unauthenticated attackers to view and modify potentially sensitive data via HTTP requests
6.1
CVE-2026-5301
- EPSS 0.28%
- Veröffentlicht 08.04.2026 12:04:51
- Zuletzt bearbeitet 24.07.2026 20:10:00
Stored XSS in log viewer in CoolerControl/coolercontrol-ui <4.0.0 allows unauthenticated attackers to take over the service via malicious JavaScript in poisoned log entries
7.2
CVE-2026-5208
- EPSS 0.97%
- Veröffentlicht 08.04.2026 11:36:11
- Zuletzt bearbeitet 24.07.2026 20:10:00
Command injection in alerts in CoolerControl/coolercontrold <4.0.0 allows authenticated attackers to execute arbitrary code as root via injected bash commands in alert names
1