CVE-2026-10065

Severity CVSS v4.0:
HIGH
Type:
CWE-119 Buffer Errors
Publication date:
29/05/2026
Last modified:
29/05/2026

Description

A weakness has been identified in Shibby Tomato 1.28. This vulnerability affects the function get_ups_field of the file tomatodata.cgi. Executing a manipulation of the argument Date can lead to stack-based buffer overflow. It is possible to launch the attack remotely. This project is superseded by FreshTomato. This vulnerability only affects products that are no longer supported by the maintainer.