CVE-2026-24345: Nimbletech Ezcast Pro Dongle Ii Firmware

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Cross-Site Request Forgery in Admin UI of EZCast Pro II version 1.17478.146 allows attackers to bypass authorization checks and gain full access to the admin UI

Affected products

  • Nimbletech Ezcast Pro Dongle Ii Firmware: version 1.17478.146 only

Published 2026-01-27. Last modified 2026-06-17.