PT-2026-48561 · Civetweb+1 · Civetweb+1
CVE-2026-44693
·
Published
2026-06-10
·
Updated
2026-06-11
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Pi-hole FTL versions prior to 6.6.1
Description
A race condition exists in the HTTP session management subsystem of the embedded CivetWeb-based web server. This issue was introduced during the v6.0 rewrite of the server engine.
Recommendations
Update to version 6.6.1.
Exploit
Fix
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Civetweb
Pi-Hole Ftl