CVE-2026-22097EPSS p24.6%

CVE-2026-22097CVE-2026-22097

Description

The firmware update mechanism does not include cryptographic signature validation. This allows anyone with access to the firmware update capability to upload arbitrary files which can then lead to arbitrary code execution.

Scoring

EPSS0.33% probability of exploitation · percentile 24.6% · 2026-10-05T12:00:23Z
Last modified2026-07-13
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.