<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/">
  <channel>
    <title>TP-Link CVEs · CVE Brief</title>
    <link>https://cvebrief.com/archive/cves/vendor/tp-link/</link>
    <atom:link href="https://cvebrief.com/feeds/vendor/tp-link.xml" rel="self" type="application/rss+xml"/>
    <description>High and critical TP-Link vulnerabilities covered by CVE Brief, with independent analyst commentary.</description>
    <language>en-us</language>
    <lastBuildDate>Sat, 29 Aug 2026 12:00:00 GMT</lastBuildDate>
    <item>
      <title>CVE-2026-75118 · CVSS 8.7 · TL-MR100 v3.20</title>
      <link>https://cvebrief.com/cve/cve-2026-75118/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-75118</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Sat, 29 Aug 2026 12:00:00 GMT</pubDate>
      <description>A pre-authentication stack-based buffer overflow vulnerability exists in the http_gdpr_decrypt function of TL-MR100 V3.20 due to insufficient bounds checking of encrypted requests to the /cgi/login endpoint. Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-76784 · CVSS 8.7 · HS103P3 / HS103P4 v5</title>
      <link>https://cvebrief.com/cve/cve-2026-76784/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-76784</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Thu, 27 Aug 2026 12:00:00 GMT</pubDate>
      <description>Multiple TP-Link Kasa smart home devices contain insufficient cryptographic protections in the local device communication protocol Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-15469 · CVSS 7.7</title>
      <link>https://cvebrief.com/cve/cve-2026-15469/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-15469</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 25 Aug 2026 12:00:00 GMT</pubDate>
      <description>The use of hard-coded cryptographic key vulnerability has been identified in the mesh functionality of Deco XE75 v3, XE5300 v3 Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-16348 · CVSS 8.5 · Archer BE800 V1</title>
      <link>https://cvebrief.com/cve/cve-2026-16348/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-16348</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 25 Aug 2026 12:00:00 GMT</pubDate>
      <description>An authenticated command injection vulnerability in TP-Link Archer BE800 V1 allows an attacker with administrative access to execute arbitrary system commands with root privileges by injecting shell metacharacters via a VPN connection Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-78541 · CVSS 8.5 · Archer BE3600 v1</title>
      <link>https://cvebrief.com/cve/cve-2026-78541/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-78541</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 25 Aug 2026 12:00:00 GMT</pubDate>
      <description>A stored OS command injection vulnerability exists in the parent-control module of TP-Link Archer BE3600 V1 Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-9254 · CVSS 8.7 · Archer BE800 V1</title>
      <link>https://cvebrief.com/cve/cve-2026-9254/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-9254</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 25 Aug 2026 12:00:00 GMT</pubDate>
      <description>An unauthenticated OS command injection vulnerability exists in the parental control functionality of Archer BE800 V1, BE3600 V1, and AX75 V1 due to improper filtering and neutralization of special characters in certain parameters Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-17250 · CVSS 8.5 · TL-MR6400 v7.0</title>
      <link>https://cvebrief.com/cve/cve-2026-17250/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-17250</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Sat, 22 Aug 2026 12:00:00 GMT</pubDate>
      <description>A stack-based buffer overflow vulnerability exists in the firmware update functionality of TL-MR6400 v7 due to unsafe processing of attacker-controlled metadata within a firmware image Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2025-30237 · CVSS 8.7 · HB810(US2) V1.0/1.6/2.0/2.6</title>
      <link>https://cvebrief.com/cve/cve-2025-30237/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2025-30237</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 11 Aug 2026 12:00:00 GMT</pubDate>
      <description>The affected TP-Link Aginet devices contain a flaw in the web management interface where authentication checks are not consistently enforced on certain endpoints Fix documented: 800.0.16 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2025-30238 · CVSS 8.6 · HB810(US2) V1.0/1.6/2.0/2.6</title>
      <link>https://cvebrief.com/cve/cve-2025-30238/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2025-30238</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 11 Aug 2026 12:00:00 GMT</pubDate>
      <description>In affected TP-Link Aginet devices, insufficient authorization validation allows authenticated low-privileged users to execute higher-privileged operations Fix documented: 800.0.16 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2025-30239 · CVSS 8.5 · HB810(US2) V1.0/1.6/2.0/2.6</title>
      <link>https://cvebrief.com/cve/cve-2025-30239/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2025-30239</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 11 Aug 2026 12:00:00 GMT</pubDate>
      <description>In affected TP-Link Aginet devices, use of hardcoded cryptographic keys embedded in the firmware to protect sensitive configuration data may allow an attacker who has access to device storage to recover the keys and decrypt stored data Fix documented: 800.0.16 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2025-30241 · CVSS 8.6 · HB810(US2) V1.0/1.6/2.0/2.6</title>
      <link>https://cvebrief.com/cve/cve-2025-30241/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2025-30241</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 11 Aug 2026 12:00:00 GMT</pubDate>
      <description>Certain web interface components in affected TP-Link Aginet devices do not validate and sanitize user-supplied input properly before passing it to system-level command execution functions Fix documented: 800.0.16 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2025-15628 · CVSS 8.2 · Omada Gateways</title>
      <link>https://cvebrief.com/cve/cve-2025-15628/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2025-15628</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 04 Aug 2026 12:00:00 GMT</pubDate>
      <description>Affected Omada devices rely on embedded certificates that are shared across deployments to establish trust between controllers and managed devices Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2025-9291 · CVSS 7.7 · Omada Gateways</title>
      <link>https://cvebrief.com/cve/cve-2025-9291/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2025-9291</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 04 Aug 2026 12:00:00 GMT</pubDate>
      <description>A certification validation weakness exists in communication between affected Omada devices and cloud controllers Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-9044 · CVSS 8.5 · AXE75 V1</title>
      <link>https://cvebrief.com/cve/cve-2026-9044/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-9044</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Sat, 01 Aug 2026 12:00:00 GMT</pubDate>
      <description>An OS command injection vulnerability exists in the VPN module of TP-Link AXE75 V1 routers Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-12935 · CVSS 8.7 · TL-WR940N v6</title>
      <link>https://cvebrief.com/cve/cve-2026-12935/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-12935</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Thu, 30 Jul 2026 12:00:00 GMT</pubDate>
      <description>The TL-WR940N v6 router contains a vulnerability in its RTSP connection tracking module that can lead to a stack-based buffer overflow Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-9770 · CVSS 8.6 · Kasa EC71 v4</title>
      <link>https://cvebrief.com/cve/cve-2026-9770/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-9770</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Wed, 15 Jul 2026 12:00:00 GMT</pubDate>
      <description>Kasa EC71 v4 and EC70 v4 firmware contains a static cryptographic private key stored in a read-only filesystem that is shared across devices Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-11834 · CVSS 8.7 · Archer MR200 v07</title>
      <link>https://cvebrief.com/cve/cve-2026-11834/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-11834</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 23 Jun 2026 12:00:00 GMT</pubDate>
      <description>A command injection vulnerability has been identified in the DHCP option processing logic in multiple TP-Link router models, due to insufficient validation of externally supplied DHCP option data Fix documented: V6_260608 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-8697 · CVSS 8.8 · Archer C64 v1.0</title>
      <link>https://cvebrief.com/cve/cve-2026-8697/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-8697</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Thu, 04 Jun 2026 12:00:00 GMT</pubDate>
      <description>Due to improper enforcement of authentication rate-limiting on a debug SSH service in Archer C64 v1, the SSH service allows unlimited authentication attempts and uses the same credentials as the web interface Fix documented (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-3294 · CVSS 8.8 · Archer RE650 v1</title>
      <link>https://cvebrief.com/cve/cve-2026-3294/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2026-3294</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 02 Jun 2026 12:00:00 GMT</pubDate>
      <description>An authentication logic vulnerability in multiple TP-Link range extenders allows an unauthenticated attacker on an adjacent network to manipulate a login parameter and reset the administrator password due to insufficient validation Fix documented: V1_20260429 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2023-28760 · CVSS 7.5</title>
      <link>https://cvebrief.com/cve/cve-2023-28760/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2023-28760</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Thu, 02 Oct 2025 12:00:00 GMT</pubDate>
      <description>TP-Link AX1800 WiFi 6 Router (Archer AX21) devices allow unauthenticated attackers (on the LAN) to execute arbitrary code as root via the db_dir field to minidlnad Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2023-50224 · CVSS 9.5 · actively exploited (CISA KEV) · TL-WR841N</title>
      <link>https://cvebrief.com/cve/cve-2023-50224/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2023-50224</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Wed, 03 Sep 2025 12:00:00 GMT</pubDate>
      <description>TP-Link TL-WR841N Authentication Bypass by Spoofing Vulnerability - Active in CISA KEV catalog. Fix documented: V11_211209 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2025-9377 · CVSS 9.5 · actively exploited (CISA KEV) · Archer C7(EU) V2</title>
      <link>https://cvebrief.com/cve/cve-2025-9377/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2025-9377</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Wed, 03 Sep 2025 12:00:00 GMT</pubDate>
      <description>TP-Link Archer C7(EU) and TL-WR841N/ND(MS) OS Command Injection Vulnerability - Active in CISA KEV catalog. Fix documented: 241108 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2020-24363 · CVSS 9.5 · actively exploited (CISA KEV) · TL-WA855RE</title>
      <link>https://cvebrief.com/cve/cve-2020-24363/?utm_source=cvebrief&amp;utm_medium=rss&amp;utm_campaign=vendor-feed</link>
      <guid isPermaLink="false">cvebrief-tp-link-CVE-2020-24363</guid>
      <media:content url="https://cvebrief.com/feeds/vendor/tp-link.png" medium="image" type="image/png"/>
      <pubDate>Tue, 02 Sep 2025 12:00:00 GMT</pubDate>
      <description>TP-link TL-WA855RE Missing Authentication for Critical Function Vulnerability - Active in CISA KEV catalog. Independent analyst report on CVE Brief.</description>
    </item>
  </channel>
</rss>
