Skip to content

CVE-2026-21876

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
January 9, 2026
Last Seen
January 9, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical vulnerability in the OWASP Core Rule Set (CRS), tracked as CVE-2026-21876, has been identified. This vulnerability allows attackers to bypass charset validation protections, affecting all supported versions of CRS and specifically targeting rule 922110, which is designed to block dangerou...

Public Exploits

Checking GitHub for proof-of-concept code…

Related Entities