CVE-2026-30840
Severity CVSS v4.0:
Pending analysis
Type:
CWE-295
Improper Certificate Validation
Publication date:
07/03/2026
Last modified:
07/03/2026
Description
Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 4.6.2, there is a server-side request forgery vulnerability in notification testers. This issue has been patched in version 4.6.2.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH



