Coolercontrold
Vendor:
First CVE: Apr 8, 2026 · Active for under a year
4
Total CVEs
More Total CVEs than 75% of tracked products
4.0
Avg CVEs / Year
Higher CVE frequency than 85% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 64% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Coolercontrold over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 8, 2026
3 months ago
Most Recent CVE
Apr 8, 2026
110 days ago
CVE Severity & Scoring
Coolercontrold4 CVEs
25%
50%
25%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network4 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None2 (50.0%)
Unknown0 (0.0%)
Required2 (50.0%)
Privileges Required
Low0 (0.0%)
High1 (25.0%)
None3 (75.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-5300CRITICAL Unauthenticated functionality in CoolerControl/coolercontrold <4.0.0 allows unauthenticated attackers to view and modify potentially sensitive data via HTTP requests | Apr 8, 2026 | 9.1 | 37 | NO | NO |
CVE-2026-5302HIGH CORS misconfiguration in CoolerControl/coolercontrold <4.0.0 allows unauthenticated remote attackers to read data and send commands to the service via malicious websites | Apr 8, 2026 | 8.1 | 28 | NO | NO |
CVE-2026-5208HIGH Command injection in alerts in CoolerControl/coolercontrold <4.0.0 allows authenticated attackers to execute arbitrary code as root via injected bash commands in alert names | Apr 8, 2026 | 7.2 | 28 | NO | NO |
CVE-2026-5301MEDIUM Stored XSS in log viewer in CoolerControl/coolercontrol-ui <4.0.0 allows unauthenticated attackers to take over the service via malicious JavaScript in poisoned log entries | Apr 8, 2026 | 6.1 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (4 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (4 CVEs).
Media Mentions
Signals from CVEs in this product scope (4 CVEs).
Top CNAs Publishing CVEs For Coolercontrold
Top CWEs
Versions
No cataloged versions.