
CVE-2026-22790 EVerest is an EV charging software stack. Prior to version 2026.02.0, `HomeplugMessage::setup_payload` trusts `len` after an `assert`; in release builds the check is … https://www.cve.org/CVERecord?id=CVE-2026-22790
Post summary
The text announces CVE-2026-22790, detailing a flaw in EVerest's `HomeplugMessage::setup_payload` function where the length parameter is improperly trusted after an assertion.


