CVE-2026-38819EPSS p15.7%

CVE-2026-38819CVE-2026-38819

Description

Multiple memory leaks in openNDS before 11.0.0 allow an unauthenticated attacker on the captive portal network to exhaust all available memory on the device within minutes.

Scoring

CVSS 5.3 ()
VectorCVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS0.26% probability of exploitation · percentile 15.7% · 2026-10-05T12:00:23Z
Last modified2026-09-09
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.