CVE-2026-9038
Stack-based buffer overflow in XCharge C6
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A stack-based buffer overflow vulnerability in the charging controller’s signal-processing logic allows an attacker with physical access to the charging interface to supply message fields that exceed expected bounds. Because the input is not sufficiently validated, memory corruption may occur, which can lead to execution of unauthorized code with elevated privileges.
| CWE | CWE-121 |
| Vendor | xcharge |
| Product | c6 |
| Published | May 28, 2026 |
| Last Updated | May 29, 2026 |
Stay Ahead of the Next One
Get instant alerts for xcharge c6
Be the first to know when new unknown vulnerabilities affecting xcharge c6 are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
XCharge / C6
0 < May_22_2026
References
Credits
Lionel R. Saposnik of SaiFlow reported these vulnerabilities to CISA.