216.73.216.226

CVE-2026-10825

· Published 16/06/2026 12:16 · Modified 16/06/2026 15:26 · Author: The MITRE Corporation

Labels: CVE-2026-10825 2026-06-16CVE-2026-10825CWE-1287[email protected]

Essential information

Published
16/06/2026 12:16
Modified
16/06/2026 15:26
Author
The MITRE Corporation
Creator
The MITRE Corporation
CVSS
7.1 HIGH (v3) 7.1 HIGH (v4.0)
CISA KEV
No
CWE
CWE-1287
CVSS vector

CVSS metrics

Description

A denial-of-service vulnerability exists in the WebSocket API due to insufficient validation and handling of JSON-based requests. A low-privileged authenticated attacker can send a specially crafted request that causes service disruption and may result in an unexpected device reboot.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
moxa / websocket api cpe:2.3:a:moxa:websocket_api:*:*:*:*:*:*:*:*

References