CVE-2026-9044: TP-Link Command Injection Hits Archer AXE75
ID: 6cbdffd8-fc65-5e5e-9037-9b4ec4f5350b
STIX ID: report--6cbdffd8-fc65-5e5e-9037-9b4ec4f5350b
Feed Name: securityonline.info
Threat Score
TP-Link patched a high-severity command injection vulnerability (CVE-2026-9044, CVSSv4 8.5) in the OpenVPN module of the Archer AXE75 V1 router; exploitation requires adjacent network access and valid credentials, no public proofs or in-the-wild exploitation have been reported, and owners should update to firmware 1.5.6 Build 20260623 immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
