
CVE-2026-26213 thingino-firmware versions up to the firmware-2026-03-16 release contains an unauthenticated os command injection vulnerability in the WiFi captive portal CGI script … https://www.cve.org/CVERecord?id=CVE-2026-26213
Post summary
The text announces CVE‑2026‑26213 as an unauthenticated OS command injection in Thingino firmware up to firmware‑2026‑03‑16, providing technical details but no exploit, PoC, or patch information.
