AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-18819

MEDIUM · CVSS 4.3 EPSS 0.16% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-04 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

RackTables versions up to 0.22.0 are vulnerable to cross-site request forgery (CSRF), allowing remote attackers to manipulate user actions without their consent. The lack of CSRF prevention mechanisms poses a risk of unauthorized actions being executed by authenticated users. Organizations using RackTables should prioritize remediation to mitigate potential exploitation of this vulnerability.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-18819
Severity
MEDIUM
CVSS
4.3
EPSS
0.16%

Original NVD Description

A security vulnerability has been detected in RackTables up to 0.22.0/e5fff9f8aab339798ed47e8c6d7d977ed97a82bd. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used. The project maintainer confirms: "[I]t seems plausible, in that RackTables does not at this time have any CSRF prevention. You may assign a CVE ID to this, but there is no guarantee it will be handled in urgent, or even timely, manner, or at all."