CVE•Published 2026-04-24•Modified 2026-05-11•1 article on news•5 live references•NVD data
CVE-2026-1949Deltaww · As320t_firmware
Vulnerability data via NVD (ingested)
CVSS v3.1
9.8
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS percentile
5
Exploit Prediction Scoring System · top 95% of all CVEs
Weaknesses (CWE)
Description
Delta Electronics AS320T has incorrect calculation of the buffer size on the stack in the GET/PUT request handler of the web service.
Timeline
Published 2026-04-24
Modified 2026-05-11
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common).
Shodan · vuln tag0 hosts
vuln:CVE-2026-1949Hosts Shodan has explicitly fingerprinted as vulnerable.
Shodan · OS
os:"As320t Firmware"Hosts Shodan identified as running As320t Firmware.
More intel sources (5)
Shodan report
vuln:CVE-2026-1949Country / ASN / product breakdown for the vuln query.
Censys
vulnerabilities.cve_id: CVE-2026-1949Censys host search filtered to this CVE id.
grep.app
CVE-2026-1949Public source-code mentions — fast PoC discovery.
GitHub code
CVE-2026-1949GitHub code search for direct mentions.
Google dork
"CVE-2026-1949" exploit -site:nvd.nist.govWrite-ups and news, NVD excluded.
Known PoCs on GitHub (4)
CVE-2026-19494 repos
FIRST-Tech-Challenge/FtcRobotControllerJava
FTC Android Studio Workspace for robot programming in Android Studio
IBM/FactReasonerPython
Long-form factuality assessor for large language models
xianyu110/awesome-gpt-6-astraJavaScript
Merged community catalog of GPT-6 Astra games, demos, projects, prompts, and benchmarks
hiifong/starListPython
Export your star's repository list