CVE-2026-10825
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
16/06/2026
Last modified:
16/06/2026
Description
A denial-of-service vulnerability exists in the WebSocket API due to insufficient validation and handling of JSON-based requests. A low-privileged authenticated attacker can send a specially crafted request that causes service disruption and may result in an unexpected device reboot.
Impact
Base Score 4.0
7.10
Severity 4.0
HIGH



