Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.8
CVE-2026-0651
A path traversal vulnerability was identified TP-Link Tapo C260 v1, D235 v1, C211 v2 and C520WS v2.6 within the HTTP server’s handling of GET request…
Tapo C260 Firmware
1.1.9+
HIGH 8.8
CVE-2025-15557
An Improper Certificate Validation vulnerability in TP-Link Tapo H100 v1 and Tapo P100 v1 allows an on-path attacker on the same network segment to i…
Tapo H100 Firmware
1.2.6 / 1.6.1+
MEDIUM 5.6
CVE-2025-15551
The response coming from TP-Link Archer MR200 v5.2, C20 v5 and v6, TL-WR850N v3, and TL-WR845N v4 for any request is getting executed by the JavaScri…
Archer Mr200 Firmware
0.9.1_Build251205 / 250630+
HIGH 8.1
CVE-2025-62501
SSH Hostkey misconfiguration vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows attackers to obtain device credentials through a sp…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-62673
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tdpserver modules) allows adjacent attackers to cause a segmentation fault or p…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-58455
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentat…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-59482
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentat…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-59487
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentat…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-61944
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentat…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-61983
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentat…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-62404
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentat…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-62405
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentat…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2025-58077
Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentat…
Archer Ax53 Firmware
Mitigation only
HIGH 8.0
CVE-2026-22223
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(vpn modules) allows adjacent
authenticated
attacker
execute arbitrary code. …
Archer Be230 Firmware
1.2.4+
HIGH 7.2
CVE-2026-22224
A command injection vulnerability may be exploited after the admin's authentication in the cloud communication interface on the TP-Link Archer BE230 …
Archer Be230 Firmware
1.2.4+
HIGH 7.2
CVE-2026-22225
A command injection vulnerability may be exploited after the admin's authentication in the VPN Connection Service on the Archer BE230 v1.2
and Arche…
Archer Be230 Firmware
1.2.4+
HIGH 7.2
CVE-2026-22226
A command injection vulnerability may be exploited after the admin's authentication in the VPN server configuration module on TP-Link Archer BE230 v1…
Archer Be230 Firmware
1.2.4+
HIGH 7.2
CVE-2026-22227
A command injection vulnerability may be exploited after the admin's authentication via the configuration backup restoration function of the TP-Link …
Archer Be230 Firmware
1.2.4+
HIGH 7.2
CVE-2026-22229
A command injection vulnerability may be exploited after the admin's authentication via the import of a crafted VPN client configuration file on the …
Archer Be230 Firmware
1.2.4+
HIGH 8.0
CVE-2026-22221
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(vpn modules) allows adjacent
authenticated
attacker
execute arbitrary code. …
Archer Be230 Firmware
1.2.4+
HIGH 8.0
CVE-2026-22222
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(web modules) allows adjacent
authenticated
attacker to execute arbitrary code.…
Archer Be230 Firmware
1.2.4+
HIGH 8.0
CVE-2026-0630
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(web modules) and Archer AXE75 v1.0 allows adjacent
authenticated
attacker to e…
Archer Be230 Firmware
1.2.4+
HIGH 8.0
CVE-2026-0631
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(vpn modules) and OpenVPN of AXE75 v1 allows an adjacent
authenticated
attacker…
Archer Be230 Firmware
1.2.4+
HIGH 8.8
CVE-2026-1457EPSS 7%
An authenticated buffer handling flaw in TP-Link VIGI C385 V1 Web API lacking input sanitization, may allow memory corruption leading to remote code …
Vigi C385 Firmware
3.1.1+
MEDIUM 6.5
CVE-2025-15548
Some VX800v v1.0 web interface endpoints transmit sensitive information over unencrypted HTTP due to missing application layer encryption, allowing a…
Vx800v Firmware
800.0.18+
MEDIUM 6.3
CVE-2025-15541
Improper link resolution in the VX800v v1.0 SFTP service allows authenticated adjacent attackers to use crafted symbolic links to access system files…
Vx800v Firmware
800.0.11+
MEDIUM 5.3
CVE-2025-15542
Improper handling of exceptional conditions in VX800v v1.0 in SIP processing allows an attacker to flood the device with crafted INVITE messages, blo…
Vx800v Firmware
800.0.12+
HIGH 8.8
CVE-2025-13399
A weakness in the web interface’s application layer encryption in VX800v v1.0 allows an adjacent attacker to brute force the weak AES key and decrypt…
Vx800v Firmware
800.0.11+
MEDIUM 6.8
CVE-2025-15545
The backup restore function does not properly validate unexpected or unrecognized tags within the backup file. When such a crafted file is restored, …
Archer Re605x Firmware
1.2.10+
HIGH 7.5
CVE-2026-0919
The HTTP parser of Tapo C210 v3, C220 v1 and C520WS v2 cameras improperly handles requests containing an excessively long URL path. An invalid‑URL er…
Tapo C220 Firmware
1.2.3 / 1.4.2+