Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Chargepoint

First CVE: Nov 22, 2024Active for: 2 yearsTotal CVEs: 11
36.9
VTI Score
Medium

ChargePoint develops a focused line of home electric-vehicle charging hardware and firmware products, including its Home Flex series in multiple connector configurations. The recurring weakness classes in its disclosures center on input validation, buffer handling, certificate validation, and access control within embedded charging-device firmware, reflecting the challenges of securing networked power-delivery appliances. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
11
Total CVEs
More Total CVEs than 92% of tracked vendors
0.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 4% of tracked vendors
7.8
Avg CVSS Score
Higher Avg CVSS Score than 74% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Chargepoint over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 22, 2024
19 months ago
Most Recent CVE
Apr 11, 2026
104 days ago

Products(10 total)

Top CVEs

Signals from CVEs in this vendor scope (11 CVEs).

11 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-4157HIGH
ChargePoint Home Flex revssh Service Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affect
Apr 11, 20267.526NONO
CVE-2026-4156HIGH
ChargePoint Home Flex OCPP getpreq Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code o
Apr 11, 20267.526NONO
CVE-2026-4155HIGH
ChargePoint Home Flex Inclusion of Sensitive Information in Source Code Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive infor
Apr 11, 20267.526NONO
CVE-2024-23921HIGH
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required
Jan 31, 20258.825NONO
CVE-2024-23920HIGH
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required
Jan 31, 20258.825NONO
CVE-2024-23971HIGH
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required
Jan 31, 20258.825NONO
CVE-2024-23969HIGH
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required
Jan 31, 20258.825NONO
CVE-2024-23968HIGH
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required
Jan 31, 20258.822NONO
CVE-2024-23970MEDIUM
This vulnerability allows network-adjacent attackers to compromise transport security on affected installations of ChargePoint Home Flex charging stations. Authentication is not re
Jan 31, 20256.520NONO
CVE-2024-7392MEDIUM
ChargePoint Home Flex Bluetooth Low Energy Denial-of-Service Vulnerability. This vulnerability allows network-adjacent attackers to create a denial-of-service condition on affected
Nov 22, 20246.519NONO
View all 11 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products11 CVEs
27%
73%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network1 (9.1%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network10 (90.9%)
Attack Complexity
Low9 (81.8%)
High2 (18.2%)
Unknown0 (0.0%)
User Interaction
None10 (90.9%)
Unknown0 (0.0%)
Required1 (9.1%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None11 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (11 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Chargepoint.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Chargepoint — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Chargepoint's Products

View all 2 CNAs →

Top CWEs