Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Swtchenergy

First CVE: Feb 27, 2026Active for: 1 yearTotal CVEs: 4

Swtchenergy operates a web-based energy management platform where the observed vulnerability pattern centers on authentication and session handling: recurring issues include improper restriction of authentication attempts, insufficient session expiration, inadequately protected credentials, and missing authentication enforcement on critical functions. These classes reflect common risks in web applications managing user access and sensitive energy data; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
4
Total CVEs
More Total CVEs than 79% of tracked vendors
4.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 95% of tracked vendors
8.1
Avg CVSS Score
Higher Avg CVSS Score than 78% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Swtchenergy over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 27, 2026
4 months ago
Most Recent CVE
Feb 27, 2026
147 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (4 CVEs).

4 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-25113CRITICAL
The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow an attacker to conduct denial
Feb 27, 20269.832NONO
CVE-2026-27767CRITICAL
WebSocket endpoints lack proper authentication mechanisms, enabling attackers to perform unauthorized station impersonation and manipulate data sent to the backend. An unauthenti
Feb 27, 20269.831NONO
CVE-2026-25778HIGH
The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same session identifier. This implementa
Feb 27, 20267.526NONO
CVE-2026-27773MEDIUM
Charging station authentication identifiers are publicly accessible via web-based mapping platforms.
Feb 27, 20265.318NONO
View all 4 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products4 CVEs
25%
25%
50%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network4 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None4 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None4 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (4 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Swtchenergy.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Swtchenergy — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Swtchenergy's Products

View all 1 CNAs →

Top CWEs