The number and severity of CVEs published that impact products developed by Ctek over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-25192CRITICAL WebSocket endpoints lack proper authentication mechanisms, enabling attackers to perform unauthorized station impersonation and manipulate data sent to the backend. An unauthentica | Mar 20, 2026 | 9.8 | 34 | NO | NO |
CVE-2026-31904HIGH The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow an attacker to conduct denial-o | Mar 20, 2026 | 7.5 | 25 | NO | NO |
CVE-2026-27649MEDIUM The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same session identifier. This implementati | Mar 20, 2026 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ctek.
Media articles that mention a CVE ID that affects a product developed by Ctek — matched by CVE ID, not by vendor name.