PT-2026-28358 · Everest · Everest

Finder16

·

Publicado

2026-03-26

·

Atualizado

2026-03-27

·

CVE-2026-27813

CVSS v3.1

5.3

Média

VetorAV:P/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions EVerest versions prior to 2026.02.0
Description EVerest is an EV charging software stack susceptible to a data race condition leading to a use-after-free issue. This condition is triggered by events such as EV plug-in/unplug and RFID/RemoteStart/OCPP authorization events, including delayed authorization responses.
Recommendations Update to version 2026.02.0 or later.

Exploit

Correção

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-27813
GHSA-VGMH-MMG3-22M6

Produtos afetados

Everest