PT-2026-4384 · Webpushr · Webpushr

Published

2026-01-23

·

Updated

2026-01-24

·

CVE-2026-24536

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions webpushr versions through 4.38.0
Description A flaw exists in webpushr webpushr-web-push-notifications that could allow retrieval of embedded sensitive data. This issue relates to the exposure of sensitive system information to an unauthorized control sphere.
Recommendations Update webpushr to a version later than 4.38.0.

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-24536

Affected Products

Webpushr