CVE-2026-22539: Efacec Qc 60/90/120

Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.

As the service interaction is performed without authentication, an attacker with some knowledge of the protocol could obtain information about the charger via OCPP v1.6.

Affected products

  • Efacec Qc 60/90/120: version 8 only

Published 2026-01-07. Last modified 2026-06-17.