# CVE-2026-16218

## Summary

- **CVE ID:** CVE-2026-16218
- **Severity:** LOW
- **CVSS Score:** 2.6 (CVSS:4.0/AV:A/AC:H/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X)
- **CWE:** CWE-703
- **Published:** Jul 19, 2026
- **Last Modified:** Jul 20, 2026

## Description

A vulnerability was detected in hunvreus devpush up to 0.4.6. Affected by this issue is the function reset_storage of the file app/workers/tasks/storage.py of the component Storage Reset Failure Handler. The manipulation results in improper check or handling of exceptional conditions. A high complexity level is associated with this attack. The exploitation is known to be difficult. The project was informed of the problem early through an issue report but has not responded yet.

## Affected Products

- hunvreus — devpush (0.4.0)
- hunvreus — devpush (0.4.1)
- hunvreus — devpush (0.4.2)
- hunvreus — devpush (0.4.3)
- hunvreus — devpush (0.4.4)
- hunvreus — devpush (0.4.5)
- hunvreus — devpush (0.4.6)

## References

- [CNA](https://vuldb.com/vuln/380041)
- [CNA](https://vuldb.com/vuln/380041/cti)
- [CNA](https://vuldb.com/cve/CVE-2026-16218)
- [CNA](https://vuldb.com/submit/857951)
- [CNA](https://github.com/hunvreus/devpush/issues/69)
- [CNA](https://github.com/hunvreus/devpush/)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.29%
- **EPSS Percentile:** 21.7

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._