CVE-2026-53676
EUVD-2026-3782817.06.2026, 23:17
ThingsBoard contains a prototype pollution vulnerability which may lead to arbitrary code execution within a sandboxed context by a user who can log in to the affected product with the tenant administrator privilege (TENANT_ADMIN).
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| thingsboard | thingsboard | 𝑥 < 4.3.1.2 | CNA |