CVE-2026-5302

Publication date

2026-04-08 12:05:06

Family

GitLab

State

PUBLISHED

Description

CORS misconfiguration in CoolerControl/coolercontrold <4.0.0 allows unauthenticated remote attackers to read data and send commands to the service via malicious websites