logo

Traeger security bugs bad news for grillers with neighborly beef

ID: 73e21787-c459-5ecd-9416-928c0f3109e5

STIX ID: report--73e21787-c459-5ecd-9416-928c0f3109e5

Feed Name: The Register (Security)

Threat Score
45/100

Date Published: 2024-07-03

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Bishop Fox disclosed a high-severity insufficient-authorization vulnerability in Traeger's D2 Wi‑Fi controller registration API (rated 7.1) that can let attackers obtain control of grills—forcing shutdowns or cranking temperatures—and a separate medium-severity (4.3) GraphQL issue that could enumerate registered grills; researchers demonstrated remote shutdown and overheating, and Traeger has issued firmware updates and disabled the ListGrills function to mitigate the issues.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.