CVE-2026-78136: Chirpmyradio Chirp

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

chirpmyradio CHIRP before 39178db allows eval injection via crafted CSV data. This occurs in _clean_tmode in drivers/kenwood_itm.py.

Affected products

Published 2026-08-23. Last modified 2026-09-09.