CVE-2026-38422
Buffer Overflow vulnerability in arendst Tasmota v.15.3.0.3 and before allows a remote attacker to execute arbitrary code via the tasmota/tasmota_xdrv_driver/xdrv_10_scripter.ino, fetch_jpg() function.
- Fix
- Available
- CVSS 3.1
- 7.3 HIGH
- EPSS
- 0.8% (54th percentile)
- Weakness
- CWE-121
- NVD status
- Deferred
- Published
- 2026-05-27
CVE-2026-38422 at NVD
1 known exploit for CVE-2026-38422
Proof-of-concept code and exploit modules indexed by Sploitus