CVETodo[verified]@CveTodoDisclosure
CVE‑2026‑27772 is a critical flaw in OCPP WebSocket endpoints that lack authentication, enabling unauthenticated attackers to impersonate charging stations, send commands, and potentially disrupt charging infrastructure.
CRAC Learning - Tech@cracbotDisclosure
The post highlights CVE-2026-27772 as a critical WebSocket authentication flaw that permits unauthorized station impersonation, but it does not provide a PoC, exploit, or patch information.
CRAC Learning - Tech@cracbotGeneral
The post references CVE‑2026‑27772, noting its critical severity and lack of authentication on WebSocket endpoints that could allow impersonation, but does not mention PoC, exploit, patch, or active exploitation.
Infoflowcloud@infoflowcloudDisclosure
A new CVE (CVE-2026-27772) is announced, noting that WebSocket endpoints lack authentication, allowing impersonation and data tampering; no PoC, exploit, patch, or active exploitation details are provided.
CVE@CVEnewDisclosure
The post discloses that CVE‑2026‑27772 allows attackers to impersonate stations and manipulate backend data via WebSocket endpoints lacking proper authentication.
CVEFind.com@CveFindComDisclosure
CVE-2026-27772 is a critical vulnerability that permits unauthenticated access to WebSocket endpoints in charging systems, enabling unauthorized control, data manipulation, and privilege escalation.