CVE-2026-3822Disclosure(taipower / taipower_app)

LOWCVSS 4.8 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Taipower APP for Andorid developed by Taipower has an Improper Certificate Validation vulnerability. When establishing an HTTPS connection with the server, the application fails to verify the server-side TLS/SSL certificate. This flaw allows an unauthenticated remote attackers to exploit the vulnerability to perform a Man-in-the-Middle (MITM) attack to read and tamper with network packets.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-295

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • taipower_app

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 3 mentions (2026-03-09); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
taipower_app

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-03-09: 3Mentions · 2026-03-10: 1Technical Details · 2026-03-09: 303-0903-10
Signal classification2 categories
Disclosure
375.0%
General
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-093
Disclosure2General1
2026-03-101
Disclosure1
Full discourse4 posts
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-3822 📊 Severity: 6.5 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-3822 #CVE-2026-3822 #CVE #Medium  #CyberSecurity #InfoSec https://t.co/MNp9aoHUgk

    Post summary

    The tweet announces the existence of CVE-2026-3822 with a medium severity score and an unspecified product scope, but provides no further technical data or remedial information.

    0000019
    92 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3822 Taipower APP developed by Taipower has an Improper Certificate Validation vulnerability. When establishing an HTTPS connection with the server, the application fails to… https://www.cve.org/CVERecord?id=CVE-2026-3822

    Post summary

    A CVE-2026-3822 vulnerability in the Taipower APP, characterized by improper certificate validation during HTTPS connections, is newly disclosed with no associated PoC, exploit, or patch information.

    00000133
    56.6K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    General

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-3822 - Taipower|Taipower APP - Improper Certificate Validation Intel Report: https://ift.tt/W1eZkAT

    Post summary

    The post alerts to CVE-2026-3822 in the Taipower app, provides a brief description of improper certificate validation, and links to an Intel report, but offers no PoC, patch, or evidence of active exploitation.

    0000038
    347 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-3822 Improper Certificate Validation in Taipower APP Enables MITM Attacks https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3822

    Post summary

    The entry announces CVE‑2026‑3822, describing improper certificate validation in the Taipower APP that could enable man‑in‑the‑middle attacks; no PoC, exploit, active exploitation or patch details are provided.

    0000053
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apptaipowertaipower_app---

Explore more