CVE-2026-1835: LCG0124 Bootdo

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability was identified in lcg0124 BootDo up to e93dd428ef6f5c881aa74d49a2099ab0cf1e0fcb. This affects an unknown part. The manipulation leads to cross-site request forgery. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. This product adopts a rolling release strategy to maintain continuous delivery. Therefore, version details for affected or updated releases cannot be specified.

Affected products

Published 2026-02-04. Last modified 2026-06-17.