CVEs we hold for Tp-link
Records whose assigning authority named Tp-link as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-9770Hardcoded Cryptographic Key Information Disclosure Vulnerability on TP-Link Kasa EC70 and EC71TP-Link Systems Inc. Kasa EC70 v4
CVE-2026-9254Command Injection Vulnerability in Parent Control of Multiple TP-Link Archer DevicesTP-Link Systems Inc. Archer AX75 V1
CVE-2026-9151Command Injection Vulnerability in OpenVPN on Multiple TP-Link Archer RoutersTP-Link Systems Inc. Archer AX1300 v1.6
CVE-2026-9105Authenticated Stack-Based Buffer Overflow in TP-Link TL-WR841N Web InterfaceTP-Link Systems Inc. TL-WR841N v14
CVE-2026-9044Command Injection Vulnerability in OpenVPN of TP-Link Archer AXE75TP-Link Systems Inc. AXE75 V1
CVE-2026-9033Unauthenticated Captive Portal Session Termination and Forced Logout in Omada GatewaysTP-Link Systems Inc. ER605W v2
CVE-2026-9031Authenticated Denial-of-Service in HTTPD Service in TP-Link Archer A6TP-Link Systems Inc. Archer A6 v4
CVE-2026-9030Authenticated Denial-of-Service in HTTPD Service in TP-Link Archer A6TP-Link Systems Inc. Archer A6 v4
CVE-2026-8913Command Injection in TP-Link's Archer MR600 WireGuard Client ConfigurationTP-Link Systems Inc. Archer MR600 v5
CVE-2026-8714Denial-of-Service Vulnerability in RTSP Input Handling on TP-Link's Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2
CVE-2026-8699Stored Cross-Site Scripting (XSS) in TP-Link Archer C5 Web Management InterfaceTP-Link Systems Inc. Archer C5 v6.8
CVE-2026-8697Improper Authentication Rate Limiting on TP-Link's Archer C64TP-Link Systems Inc. Archer C64 v1.0
CVE-2026-8619Unauthenticated Denial-of-Service Vulnerability in HTTP Service in TP-Link TL-MR100, TL-MR150, TL-MR6400 and Archer…TP-Link Systems Inc Archer MR600 v2
CVE-2026-85384Authenticated Stack-Based Buffer Overflow in RE210 AC750 Configuration ImportTP-Link Systems Inc. RE210 AC750
CVE-2026-84941Omada Controller XML External Entity (XXE) Injection in SAML IdP Metadata Parsing Leading to Arbitrary Local File ReadTP-Link Systems Inc. OC400 v1
CVE-2026-81531Unauthenticated Account Information Disclosure in Multiple Omada ControllersTP-Link Systems Inc. OC400 v1
CVE-2026-78541Command Injection in Parent Control of TP-Link Archer BE3600 v1TP-Link Systems Inc. Archer BE3600 v1
CVE-2026-76784Insufficient Cryptographic Protections in Local Device Communication Protocol on Multiple TP-Link Kasa Smart Home…TP-Link Systems Inc. KL125
CVE-2026-76653Missing Authentication in VPN Configuration Management in TP-Link TL-MR6400 and Archer MR600TP-Link Systems Inc. Archer MR600
CVE-2026-76652Authenticated Directory Traversal Vulnerability in File Upload Functionality in TP-Link TL-MR6400 and Archer MR600TP-Link Systems Inc. Archer MR600
CVE-2026-76651Pre-Authentication Multipart Boundary Buffer Overflow in HTTP Service in TP-Link TL-WR841NTP-Link System Inc. TL-WR841N v14
CVE-2026-76650Pre-Authentication NULL Pointer Dereference in UPnP SOAP State Variable Query Processing in TP-Link TL-WR841NTP-Link System Inc. TL-WR841N v14
CVE-2026-76649Pre-Authentication NULL Pointer Dereference in UPnP SOAP Action Request Processing in TP-Link TL-WR841NTP-Link System Inc. TL-WR841N v14
CVE-2026-75619RTSP Heap Buffer Overflow Denial-of-Service Vulnerability on TP-Link Tapo C100 and C101TP-Link Systems Inc. Tapo C101 v5
CVE-2026-75618RTSP Null Pointer Dereference Denial-of-Service Vulnerability on TP-Link Tapo C100 and C101TP-Link Systems Inc. Tapo C101 v5
CVE-2026-75616Command Injection in Router Web Management InterfaceTP-Link Systems Inc. Archer C20 v6
CVE-2026-75118http_gdpr_decrypt Pre-Authentication Stack-Based Buffer OverflowTP-Link Systems Inc. TL-MR100 v3.20
CVE-2026-6250Authenticated Format String Injection on TP-Link Tapo C110TP-Link Systems Inc. Tapo C110 v2
CVE-2026-6242Authenticated Format String Vulnerability in ONVIF Subscribe Service on TP-Link Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2
CVE-2026-6241Authenticated Format String Vulnerability in ONVIF AddScopes Method on TP-Link Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2
CVE-2026-6240Authenticated Stack-based Buffer Overflow in ONVIF DeleteUsers Service on TP-Link Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2
CVE-2026-6239Authenticated Stack-based Buffer Overflow in ONVIF CreateUsers Service in TP-Link Tao C520WSTP-Link Systems Inc. Tapo C520WS v2
CVE-2026-5511Information Disclosure via Diagnostic Interface Due to Improper Input Validation on TP-Link's Archer AX72TP-Link Systems Inc. Archer AX72 (SG) v1.0
CVE-2026-5509Arbitrary Command Injection via Browser Developer Console in TP-Link Archer BE450 and BE7200TP-Link Systems Inc. Archer BE450 v1
CVE-2026-5363Use of weak cryptographic key in TP-Link Archer C7TP-Link Systems Inc. Archer C7 v5 and v5.8
CVE-2026-5040Weak Password Hashing Mechanism in TP-Link Deco M5TP-Link Systems Inc. Deco M5 Deco M5 V1
CVE-2026-5039Predictable Default Cryptographic Key Used for DES Encryption in TP-Link TL-WL841NTP-Link Systems Inc. TL-WL841N v13
CVE-2026-4346Cleartext Storage of Administrative and Wi-Fi Credentials via Accessible Serial Interface in TP Link's TL-WR850NTP-Link Systems Inc. TL-WR850N v3
CVE-2026-3841Command Injection Vulnerability in Telnet CLI on TP-Link TL-MR6400TP-Link Systems Inc. TL-MR6400 v5.3
CVE-2026-3622Denial-of-Service Vulnerability in UPnP Component of TP Link's TL-WR841NTP-Link Systems Inc. TL-WR841N v14
CVE-2026-34127Stored Cross-Site Scripting (XSS) via Configuration File Import on TP-Link's TL-SG108PETP-Link Systems Inc. TL-SG108PE v5
CVE-2026-34126Bluetooth Communication Uses Unencrypted Transmission During Initial Setup on TP-Link's Tapo L535E, P300 and D100CTP-Link Systems Inc. Tapo P300 v1.0; TP Link Systems Inc.…
CVE-2026-34124Denial of Service via Path Expansion Overflow in HTTP Service in TP-Link Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2.6
CVE-2026-34122Stack-based Buffer Overflow Leading to Denial of Service in TP-Link Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2.6
CVE-2026-34121Authentication Bypass in DS Configuration Service via HTTP Request Parsing Differential of TP-Link Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2.6
CVE-2026-34120Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2.6
CVE-2026-34119Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520WSTP-Link Systems Inc. Tapo C520WS v2.6
CVE-2026-34118Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C100, C101 & C520WSTP-Link Systems Inc. Tapo C520WS v2.6; TP Link Systems Inc.…
CVE-2026-3294Authentication Logic Vulnerability on Multiple TP-Link Range ExtendersTP-Link Systems Inc. RE580D v1
CVE-2026-3227Authenticated Command Injection on TP-Link TL-WR802N, TL-WR841N and TL-WR840NTP-Link Systems Inc. TL-WR841N v14; TP Link Systems Inc.…
CVE-2026-30818OS Command Injection Vulnerability in dnsmasq Module in TP-Link AX53TP-Link Systems Inc. AX53 v1.0
CVE-2026-30817Arbitrary File Reading Vulnerability in dnsmasq Module in TP-Link AX53TP-Link Systems Inc. AX53 v1.0
CVE-2026-30816Arbitrary File Reading Vulnerability in OpenVPN Module in TP-Link AX53TP-Link Systems Inc. AX53 v1.0
CVE-2026-30815OS Command Injection Vulnerability in OpenVPN Module in TP-Link AX53TP-Link Systems Inc. AX53 v1.0
CVE-2026-22229Command Injection Vulnerability on TP-Link Archer BE230 v1.2 and Deco BE25 v1.0TP-Link Systems Inc. Deco BE25 v1.0
CVE-2026-22228Improper Input Validation Leading to DoS on TP-Link Archer BE230TP-Link Systems Inc. Archer BE230 v1.2
CVE-2026-22227Command Injection Vulnerability on TP-Link Archer BE230 v1.2TP-Link Systems Inc. Archer BE230 v1.2
CVE-2026-22226Command Injection Vulnerability on TP-Link Archer BE230 and AX73TP-Link Systems Inc. Archer BE230 v1.2; TP Link Systems…
CVE-2026-22225Command Injection Vulnerability on TP-Link Archer BE230 v1.2 and AXE75 v1.0TP-Link Systems Inc. Archer BE230 v1.2; TP Link Systems…
CVE-2026-22224Command Injection Vulnerability on TP-Link Archer BE230 v1.2TP-Link Systems Inc. Archer BE230 v1.2
CVE-2026-22223Command Injection Vulnerability on TP-Link Archer BE230 v1.2 and BE3600 v1TP-Link System Inc. Archer BE230 v1.2; TP Link Systems Inc.…
CVE-2026-22222Command Injection Vulnerability on TP-Link Archer BE230 v1.2TP-Link Systems Inc. Archer BE230 v1.2
CVE-2026-22221Command Injection Vulnerability on TP-Link Archer BE230 v1.2 and BE3600 v1TP-Link Systems Inc Archer BE3600 V1
CVE-2026-22220Improper Input Validation Leading to DoS on TP-Link Archer BE230TP-Link Systems Inc. Archer BE230 v1.2
CVE-2026-19683Unencrypted Credential Transmission in Omada Gateway Dynamic DNS Authentication in Omada GatewaysTP-Link Systems Inc. ER605W v2
CVE-2026-19586Pre-Authentication OS Command Injection in Omada Gateways on OpenVPN Server in Omada GatewaysTP-Link Systems Inc. ER605W v2
CVE-2026-1871Authenticated Stack-based Buffer Overflow in RTSP Authentication of Tapo C200TP-Link Systems Inc. Tapo C200 v5
CVE-2026-18330Hardcoded Shared RSA-1024 Private Key in TP-Link Archer AX55 v4TP-Link Systems Inc. Archer AX55 v4
CVE-2026-18167Stack-based buffer overflow in TP-Link Archer AX55 v4TP-Link Systems Inc. Archer AX55 v4
CVE-2026-17252Unauthenticated Denial of Service via Composed HTTP Parsing and Stack-Based Out-of-Bounds Write Vulnerability in…TP-Link Systems Inc. TL-MR6400 v7.0
CVE-2026-17251Unauthenticated Denial of Service via Null Pointer Dereference in HTTP Request ParsingTP-Link Systems Inc. TL-MR6400 v7.0
CVE-2026-17250Authenticated Remote Code Execution via Stack-Based Buffer Overflow in Firmware Update HandlingTP-Link Systems Inc. TL-MR6400 v7.0
CVE-2026-17176OS command injection Vulnerability in Deco BE11000TP-Link Systems Inc. Deco BE11000 V2
CVE-2026-1668Input Validation Vulnerability on Multiple Omada SwitchesTP-Link Systems Inc. SX3206HPP 1.20
CVE-2026-16348Command Injection Vulnerability in VPN connection of Archer BE800TP-Link Systems Inc. Archer BE800 v1
CVE-2026-15469Hard-coded Mesh Group Private Key in TP-Link Deco XE75, XE5300, and WE10800TP-Link Systems Inc. Deco XE75 v3 / XE5300 v3.6/ WE10800…
CVE-2026-15429Privilege Escalation via Improper Input Sanitization in TP-Link Archer VX1800vTP-Link Systems Inc. Archer VX1800v v1
CVE-2026-15428OS Command Injection in TR-069 (CWMP) Management Interface in TP-Link Archer VX1800vTP-Link Systems Inc. Archer VX1800v v1
CVE-2026-15427OS Command Injection in TR-069 (CWMP) Management Interface in TP-Link Archer VX1800vTP-Link Systems Inc. Archer VX1800v v1
CVE-2026-15316Denial-of-Service via Oversized Encrypted Credential Input in TP-Link Tapo C200TP-Link Systems Inc. Tapo C200 v5
CVE-2026-15315Unauthenticated Administrative Authentication Bypass via device_confirm Replay in TP-Link Tapo C120 and C200TP-Link Systems Inc Tapo C120 v1
CVE-2026-15314Authenticated Denial-of-Service Vulnerability in TP-Link Tapo P110TP-Link Systems Inc. P110 v1
CVE-2026-15141Referer Validation Bypass in TL-WR820N Web Management InterfaceTP-Link Systems Inc. TL-WR820N v2
CVE-2026-1457Authenticated RCE Vulnerability Due to Buffer Overflow on TP-Link VIGI C385TP-Link Systems Inc. VIGI C485 V1
CVE-2026-13230Information Disclosure Vulnerability in Local Discovery Response in TP-Link Kasa EC70 and EC71TP-Link Systems Inc. Kasa EC70 v4
CVE-2026-1315Unauthenticated Denial of Service via Firmware Update Endpoint on TP-Link Tapo C220 & C520WSTP-Link Systems Inc. Tapo C520WS v2
CVE-2026-12935Unauthenticated Remote Code Execution in TP-Link TL-WR940N RTSP Conntrack FeatureTP-Link Systems Inc. TL-WR940N v6
CVE-2026-12760Denial-of-Service Vulnerability via Malformed IPv4 Fragmentation Handling in TP-Link Tapo C200TP-Link Systems Inc. Tapo C200 v3
CVE-2026-12339Authenticated Arbitrary File Write Vulnerability in multiple devicesTP-Link Systems Inc. TL-MR100 v3.20
CVE-2026-12001Hardcoded Credential Vulnerability in Multiple TP-Link Router ModelsTP-Link Systems Inc. Archer MR200 v5; TP Link Systems Inc.…
CVE-2026-11834Unauthenticated Command Injection via DHCP Option Handling in Multiple TP-Link RoutersTP-Link Systems Inc. TL-MR6400 v7
CVE-2026-11410OS Command Injection in BigPond Cable (BPA) Configuration in TP-Link TL-WR940NTP-Link Systems Inc. TL-WR940N v6
CVE-2026-11409OS Command Injection in IPv6 PPPoE Configuration in TP-Link TL-WR940NTP-Link Systems Inc. TL-WR940N v6
CVE-2026-10562Unauthenticated Open Redirect Vulnerability on TP-Link Archer AX20 Web InterfaceTP-Link Systems Inc. Archer AX20 V2.0
CVE-2026-0919Unauthenticated Denial of Service via Oversized URL in HTTP Parser on TP-Link Tapo C210, C220 & C520WSTP-Link Systems Inc. Tapo C520WS v2; TP Link Systems Inc.…
CVE-2026-0918Null Pointer Dereference in Tapo SmartCam HTTP Service on TP-Link Tapo C220 & C520WSTP-Link Systems Inc. Tapo C100 v5
CVE-2026-0834Logic Vulnerability on TP-Link Archer C20, Archer AX53 and TL-WR841N v13TP-Link Systems Inc. Archer C20 V5; TP Link Systems Inc.…
CVE-2026-0652Remote Code Execution on TP-Link Tapo C260 by Guest UserTP-Link Systems Inc. Tapo C260 v1
CVE-2026-0651Path Traversal on TP-Link Tapo D235, C211, C520WS and C260 via Local httpsTP-Link Systems Inc. Tapo D235 v1; TP Link Systems Inc.…
CVE-2026-0631Command Injection Vulnerability in OpenVPN Modules in Archer BE230, BE3600 and AXE75TP-Link Systems Inc. Archer AXE75 v1; TP Link Systems Inc.…
CVE-2026-0630Command Injection Vulnerability on TP-Link Archer BE230 v1.2 and AXE75 v1.0TP-Link Systems Inc. Archer BE230 v1.2; TP Link Systems…
CVE-2026-0629Authentication Bypass in Password Recovery Feature via Local Web App on Multiple VIGI CamerasTP-Link Systems Inc. VIGI Cx20 Series (C320/C420)
CVE-2025-9961Authenticated RCE by CWMP binaryTP-Link Systems Inc. AX1500 V1/V1.20/V1.26/V1.60/V1.80/V2.60…
CVE-2025-9522Blind Server-Side Request Forgery (SSRF) in Omada ControllerTP-Link Systems Inc. Omada Controller
CVE-2025-9520IDOR Leading to Owner Account Hijacking in Omada ControllerTP-Link Systems Inc. Omada Controller
CVE-2025-9377Authenticated RCE via Parental Control command injectionTP-Link Systems Inc. TL-WR841N/ND(MS) V9
CVE-2025-9293Insufficient Certificate Validation in Multiple Mobile Applications Allows Man in the Middle InterceptionTP-Link Systems Inc. VIGI App
CVE-2025-9292Permissive Web Security Policy Allows Cross-Origin Access Control Bypass on Omada Cloud ControllersTP-Link Systems Inc. Omada Cloud Controller
CVE-2025-9291Improper Certificate Validation in TP-Link Omada Cloud CommunicationsTP-Link Systems Inc. Omada Access Points
CVE-2025-9290Authentication Weakness on Omada Controllers, Gateways and Access PointsTP-Link Systems Inc. Omada EAP100-Bridge KIT v1.0
CVE-2025-9289Cross-Site Scripting (XSS) on Omada ControllersTP-Link Systems Inc. Omada cloud controller
CVE-2025-8065Remote Code Execution via Stack-based Buffer Overflow in ONVIF SOAP Parser in TP-Link Tapo C200 and C520WSTP-Link Systems Inc. Tapo C520WS v2.6
CVE-2025-7851Unauthorized root access via debug functionalityTP-Link Systems Inc. Omada Pro gateways
CVE-2025-7724Unauthenticated command injection on VIGI NVR1104H-4P V1 and VIGI NVR2016H-16MP V2TP-Link Systems Inc. VIGI NVR2016H-16MP V2
CVE-2025-7723Authenticated command injection on VIGI NVR1104H-4P V1 and VIGI NVR2016H-16MP V2TP-Link Systems Inc. VIGI NVR2016H-16MP V2
CVE-2025-7375Unauthenticated Denial-of-Service Vulnerability in Omada EAP610TP-Link Systems Inc. EAP610 v3
CVE-2025-6983Clickjacking vulnerability on the management web application of TP-LINK Archer C1200TP-Link System Inc. Archer C1200
CVE-2025-6982Hardcoded DES Decryption Keys in TP-Link Archer C50 V3/V4/V5 and C20 V5TP-Link Systems Inc. Archer C20 V5
CVE-2025-6541OS command injection using information obtained from the web management interfaceTP-Link Systems Inc. Omada Pro gateways
CVE-2025-62673Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-62501SSH Hostkey Misconfiguration Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-62405Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-62404Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-61983Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-61944Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-6151TP-Link TL-WR940N, TL-WR841N WanSlaacCfgRpm.htm buffer overflowTP-Link Systems INC. TL-WR841N V11
CVE-2025-59487Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-59482Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-5875TP-LINK Technologies TL-IPC544EP-W4 main sub_69064 buffer overflowTP-LINK Technologies TL-IPC544EP-W4
CVE-2025-58455Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-58077Heap-based Buffer Overflow Vulnerability in TP-Link Archer AX53TP-Link Systems Inc. Archer AX53 v1.0
CVE-2025-53715TP-Link TL-WR841N Wan6to4TunnelCfgRpm.htm buffer overflowTP-Link Systems INC. TL-WR841N V11
CVE-2025-53714TP-Link TL-WR841N WzdWlanSiteSurveyRpm_AP.htm buffer overflowTP-Link Systems INC. TL-WR841N V11
CVE-2025-53713TP-Link TL-WR841N WlanNetworkRpm_APC.htm buffer overflowTP-Link Systems INC. TL-WR841N V11
CVE-2025-53712TP-Link TL-WR841N WlanNetworkRpm_AP.htm buffer overflowTP-Link Systems INC. TL-WR841N V11
CVE-2025-53711TP-Link TL-WR841N, TL-WR842ND and TL-WR949N WlanNetworkRpm.htm buffer overflowTP-Link Systems INC. TL-WR841N v11; TP Link Systems Inc.…
CVE-2025-3442Information Disclosure Vulnerability in TP-Link Tapo IoT Smart HubTP-Link Tapo H200 V1 IoT Smart Hub
CVE-2025-30241OS Command Injection in Web Interface in Multiple TP-Link Aginet DevicesTP-Link Systems Inc. VX420-G2h(AU) V3.0
CVE-2025-30240Arbitrary File Read via Improper Symlink Handling in USB HTTPS Access Path in multiple TP-Link Aginet DevicesTP-Link Systems Inc. VX420-G2h(AU) V3.0
CVE-2025-30239Sensitive Data Exposure due to Hardcoded Cryptographic Keys in Multiple TP-Link Aginet DevicesTP-Link Systems Inc. VX420-G2h(AU) V3.0
CVE-2025-30238Privilege Escalation via Improper Authorization in User Management in multiple TP-Link Aginet DevicesTP-Link Systems Inc. VX420-G2h(AU) V3.0
CVE-2025-30237Authentication Bypass via Broken Access Control in Web Server in Multiple TP-Link Aginet DevicesTP-Link Systems Inc. VX420-G2h(AU) V3.0
CVE-2025-25427XSS in TP-Link TL-WR841N v14/v14.6/v14.8 Upnp pageTP-Link Systems Inc. TL-WR841N v14/v14.6/v14.8
CVE-2025-15630Device Provisioning Race Condition in TP-Link Omada Adoption WorkflowTP-Link Systems Inc Omada Controllers
CVE-2025-15629Weak Session Key Generation in TP-Link Omada Adoption ProtocolTP-Link Systems Inc Omada Controllers
CVE-2025-15628Hardcoded Certificates in TP-Link Omada Device CommunicationsTP-Link Systems Inc. Omada OLTs
CVE-2025-15627Hardcoded Cryptographic Keys in TP-Link Omada Adoption Protocol AuthenticationTP-Link Systems Inc Omada Controllers
CVE-2025-15608Buffer Overflow in Network Probe Handling Function of TP-Link Archer AX53 + Archer AX55TP-Link Systems Inc. AX55 v4.6
CVE-2025-15607Authenticated Command Injection in mcsd Service of TP-Link Archer AX53TP-Link Systems Inc. AX53 v1
CVE-2025-15606Denial of Service (DoS) in HTTPD Input Handling on TP-Link TD-W8961NTP-Link Systems Inc. TD-W8961N v4.0
CVE-2025-15605Hardcoded Cryptographic Key in Configuration Encryption Mechanism on TP-Link Archer NX200, NX210, NX500 and NX600TP-Link Systems Inc. Archer NX200 v1.0
CVE-2025-15568Command Injection Vulnerability on TP-Link Archer AXE75TP-Link Systems Inc. Archer AXE75 v1.6/v1.0
CVE-2025-15557Improper Certificate Validation in TP-Link Tapo H100 and P100 Allows Man-in-the-Middle AttackTP-Link Systems Inc. Tapo P100 v1
CVE-2025-15551LAN Code Execution on TP-Link Archer MR200, Archer C20, TL-WR850N and TL-WR845NTP-Link Systems Inc. Archer C20 v5
CVE-2025-15548Missing Application-Layer Encryption in Web Interface Endpoints on TP-Link VX800vTP-Link Systems Inc. VX800v v1.0
CVE-2025-15545Insufficient Backup File Upload Input Validation on TP-Link Archer RE605XTP-Link Systems Inc. Archer RE605X
CVE-2025-15544Weak Credential Protection During TP-Link Omada Device AdoptionTP-Link Systems Inc Omada OLTs
CVE-2025-15543Read-Only Root Access via USB Storage Device in TP-Link VX800vTP-Link Systems Inc. VX800v v1.0
CVE-2025-15542Denial of Service (DoS) of VoIP Communication on TP-Link VX800vTP-Link Systems Inc. VX800v v1.0
CVE-2025-15519Command Injection in Modem Management CLI on TP-Link Archer NX200, NX210, NX500 and NX600TP-Link Systems Inc. Archer NX200 v1.0
CVE-2025-15518Command Injection in Wireless Control CLI on TP-Link Archer NX200, NX210, NX500 and NX600TP-Link Systems Inc. Archer NX200 v1.0
CVE-2025-15517Authorization Bypass in HTTP Server Endpoints on TP-Link Archer NX200, NX210, NX500 and NX600TP-Link Systems Inc. Archer NX200 v1.0
CVE-2025-15035Arbitrary File Deletion Vulnerability in TP-Link Archer AXE75TP-Link Systems Inc. Archer AXE75 v1.6
CVE-2025-14756Authenticated Command Injection Vulnerability in Archer MR600TP-Link Systems Inc. Archer MR600 v5.0
CVE-2025-14739Uninitialized Pointer Vulnerability in TP-Link WR940N and WR941NDTP-Link Systems Inc. WR940N and WR941ND
CVE-2025-14631Null Pointer Dereference Vulnerability in Malformed 802.11 Frame of TP-Link Archer BE400TP-Link Systems Inc. Archer BE400
CVE-2025-14553Password Hash Leak Could Lead to Unauthorized Access on Tapo App via Local NetworkTP-Link Tapo App
CVE-2025-14300Unauthenticated Access to connectAP API Endpoint on Tapo C100, C200 & C425TP-Link Systems Inc. Tapo C200; TP Link Systems Inc. Tapo…
CVE-2025-14299Improper Content-Length Validation in HTTPS Requests on Tapo C200TP-Link Systems Inc. Tapo C200 V3
CVE-2025-13399Insecure Encryption in Communication with the Web Interface on TP-Link VX800vTP-Link Systems Inc. VX800v v1.0
CVE-2025-1099Information Disclosure Vulnerability in TP-Link Tapo C500 Wi-Fi CameraTP-Link Tapo C500 V2 Wi-Fi Camera
CVE-2025-0730TP-Link TL-SG108E HTTP GET Request usr_account_set.cgi get request method with sensitive query stringsTP-Link TL-SG108E
CVE-2024-54127Exposure of Wi-Fi Credentials in Plaintext in TP-Link Archer C50TP-Link Archer C50 Wireless Router
CVE-2024-54126Insufficient Integrity Verification Vulnerability in TP-Link Archer C50TP-Link Archer C50 Wireless Router
CVE-2024-5244TP-Link Omada ER605 Reliance on Security Through Obscurity VulnerabilityTP-Link Omada ER605
CVE-2024-5243TP-Link Omada ER605 Buffer Overflow Remote Code Execution VulnerabilityTP-Link Omada ER605
200 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.