A vulnerability has been found in Chip Alliance Core ROM and Core Firmware and classified as very critical. Impacted is the function validate_debug_unlock_token of the component Subsystem Mode. Performing a manipulation results in improper authentication.

This vulnerability is identified as CVE-2026-11836. The attack can be initiated remotely. There is not any exploit available.