SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-66632

MEDIUM · CVSS 6.5 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

Simple Cloudflare Turnstile versions up to 1.42.1 are vulnerable to unauthenticated content injection, allowing attackers to manipulate content without proper authorization. This could lead to the dissemination of malicious information or phishing attempts, potentially compromising user trust and security. Organizations utilizing affected versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-66632
Severity
MEDIUM
CVSS
6.5
EPSS
0.21%

Original NVD Description

Unauthenticated Content Injection in Simple Cloudflare Turnstile <= 1.42.1 versions.