SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-65477

HIGH · CVSS 7.5 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

Tonda Core versions up to 2.1.2 are vulnerable to a Local File Inclusion (LFI) attack, allowing attackers to access sensitive files on the server. This vulnerability poses a high risk as it could lead to unauthorized data exposure or system compromise. Organizations using affected versions should prioritize remediation to mitigate potential exploitation risks.

CVE
CVE-2026-65477
Severity
HIGH
CVSS
7.5
EPSS
0.32%

Original NVD Description

Contributor Local File Inclusion in Tonda Core <= 2.1.2 versions.