CVE-2026-16218

LOW

hunvreus devpush Storage Reset Failure storage.py reset_storage improper check or handling of exceptional conditions

Title source: cna
STIX 2.1

Description

A vulnerability was detected in hunvreus devpush up to 0.4.6. Affected by this issue is the function reset_storage of the file app/workers/tasks/storage.py of the component Storage Reset Failure Handler. The manipulation results in improper check or handling of exceptional conditions. A high complexity level is associated with this attack. The exploitation is known to be difficult. The project was informed of the problem early through an issue report but has not responded yet.

References (6)

Core 6
Core References
Vdb Entry, Technical Description vdb-entry technical-description
VDB-380041 | hunvreus devpush Storage Reset Failure storage.py reset_storage improper check or handling of exceptional conditions
https://vuldb.com/vuln/380041
Signature, Permissions Required signature permissions-required
VDB-380041 | CTI Indicators (IOB, IOC, IOA)
https://vuldb.com/vuln/380041/cti
Third Party Advisory third-party-advisory
CVE-2026-16218 | CVE Analysis and Report
https://vuldb.com/cve/CVE-2026-16218
Third Party Advisory third-party-advisory
Submit #857951 | hunvreus devpush d67a99b62b3e2b044f1e0e9b06a3296fe1939fe3 CWE-703 Improper Check or Handling of Exceptional Conditions
https://vuldb.com/submit/857951
Issue Tracking issue-tracking
https://github.com/hunvreus/devpush/issues/69

Scores

CVSS v3 2.6
EPSS 0.0020
EPSS Percentile 10.1%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-703
Status published
Products (7)
hunvreus/devpush 0.4.0
hunvreus/devpush 0.4.1
hunvreus/devpush 0.4.2
hunvreus/devpush 0.4.3
hunvreus/devpush 0.4.4
hunvreus/devpush 0.4.5
hunvreus/devpush 0.4.6
Published Jul 19, 2026
Tracked Since Jul 19, 2026