All 3 CVE vulnerabilities found in Core Runtime Firmware, with AI-generated Chinese analysis, references, and POCs.
Vendor: Caliptra
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-7328 | Unverified AXI Address in Subsystem Mode Commands Enables Denial of Service CWE-862 | - | - | 2026-07-22 |
| CVE-2026-5818 | MCU Firmware Update Authentication Bypass on Caliptra Core CWE-253 | - | - | 2026-06-23 |
| CVE-2026-6458 | AES-256-GCM Authentication Tag Does Not Cover First Ciphertext Blocks When AAD Is Empty CWE-325 | - | - | 2026-06-23 |
All 3 known CVE vulnerabilities affecting Core Runtime Firmware with full Chinese analysis, references, and POCs where available.