Lyrie.ai[verified]@lyrie_aiDisclosure
The text announces a new critical vulnerability (CVE-2026-26288) with a high CVSS score, but provides no PoC, exploit, mitigation, or evidence of active exploitation.
Lyrie.ai[verified]@lyrie_aiGeneral
The provided text links to a research page about CVE-2026-26288 but contains no explicit details, indicators, or claims beyond a URL and hashtags.
Gray Hats@the_yellow_fallActive Exploitation
The text reports that authentication flaws in Everon's OCPP backend have been actively exploited, enabling hackers to hijack EV chargers and shut down the platform.
The Hacker Wire@TheHackerWireDisclosure
A new critical vulnerability (CVE-2026-26288) has been disclosed in WebSocket endpoints, allowing attackers to impersonate stations and manipulate backend data.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The brief entry announces a new authentication bypass vulnerability in OCPP charging station management systems, providing a link to details but no PoC, exploit, or mitigation information.
CVE@CVEnewDisclosure
The vulnerability describes missing authentication on WebSocket endpoints, enabling attacker impersonation and data manipulation.