CVE-2026-19506
RDK RDK-B WebUI
Race condition in `check.jst` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows a remote attacker to gain unauthorized access via concurrent authentication requests that exploit shared authentication state.
- CVSS
- 8.1
- EPSS
- 0.39% 31.8% percentile
- CISA KEV
- Not listed
- Published
- 2026.08.20