CVETodo[verified]@CveTodoDisclosure
This post announces CVE-2026-20781, a critical authentication flaw in OCPP WebSocket endpoints that lets unauthenticated attackers impersonate charging stations and alter data or commands.
CRAC Learning - Tech@cracbotDisclosure
The post references CVE-2026-20781, noting its critical CVSS score and that WebSocket endpoints lack authentication, allowing unauthorized impersonation, but does not mention PoC, exploit, patch, or active exploitation.
CRAC Learning - Tech@cracbotDisclosure
The post highlights CVE-2026-20781’s critical severity and lack of authentication on WebSocket endpoints, allowing unauthorized impersonation, but provides no PoC, exploit, patch, or evidence of active exploitation.
CVE@CVEnewDisclosure
The post announces CVE‑2026‑20781, describing an authentication‑bypass flaw in WebSocket endpoints that allows attackers to impersonate stations and alter data, with no evidence of exploitation, PoC, or patch information.
CVEFind.com@CveFindComDisclosure
CVE-2026-20781 is a critical vulnerability that permits unauthenticated attackers to impersonate stations via vulnerable WebSocket endpoints, enabling manipulation of backend data.