CyberSecurityBoardThreat Intel · CVEs · Products

Tag: OpenWrt

Critical CVEs

CVE-2026-62947: OpenWrt cgi-io Path Traversal

CVE-2026-62947 is a path traversal vulnerability in OpenWrt's cgi-io component that can expose arbitrary root-readable files. It requires an authenticated session with…

authentication required cgi-io CVE-2026-62947 OpenWrt
July 28, 2026
Cyber Products

LuCI: OpenWrt Web Interface

LuCI is the default web-based user interface for OpenWrt. An AI-assisted audit by Hacker House identified multiple vulnerabilities in LuCI components, including…

command injection LuCI OpenWrt vulnerability
July 28, 2026
Cyber Products

uhttpd: OpenWrt HTTP Server

uhttpd is the HTTP server used in OpenWrt. It was found to have three HTTP request-smuggling bugs, which were fixed in OpenWrt…

HTTP server OpenWrt request smuggling uhttpd
July 28, 2026
Cyber Products

cgi-io: OpenWrt CGI File I/O Component

cgi-io is a CGI component in OpenWrt for file I/O operations. It is affected by CVE-2026-62947, a path traversal vulnerability that can…

cgi-io CVE-2026-62947 OpenWrt path traversal
July 28, 2026