PT-2026-48561 · Civetweb+1 · Civetweb+1

CVE-2026-44693

·

Published

2026-06-10

·

Updated

2026-06-11

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Pi-hole FTL versions prior to 6.6.1
Description A race condition exists in the HTTP session management subsystem of the embedded CivetWeb-based web server. This issue was introduced during the v6.0 rewrite of the server engine.
Recommendations Update to version 6.6.1.

Exploit

Fix

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-44693
GHSA-9FF5-F3V5-2XC7

Affected Products

Civetweb
Pi-Hole Ftl