Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-28766 | A specific endpoint exposes all user account information for registered Gardyn users without requiring authentication. | Critical (9.3) | 2026-04-03 | Environment Specific |
| CVE-2026-26058 | Zulip is an open-source team collaboration tool. From version 1.4.0 to before version 11.6, ./manage.py import reads ar… | Medium (6.1) | 2026-04-03 | Environment Specific |
| CVE-2026-25742 | Zulip is an open-source team collaboration tool. Prior to version 11.6, Zulip is an open-source team collaboration tool… | Medium (5.3) | 2026-04-03 | Environment Specific |
| CVE-2026-25197 | A specific endpoint allows authenticated users to pivot to other user profiles by modifying the id number in the API ca… | Critical (9.1) | 2026-04-03 | Environment Specific |
| CVE-2026-22665 | prompts.chat prior to commit 1464475 contains an identity confusion vulnerability due to inconsistent case-sensitive an… | High (8.1) | 2026-04-03 | Environment Specific |