logo

Zyxel security vulnerabilities

Multiple reports describe critical command-injection and remote-code-execution flaws across Zyxel routers, CPEs, NAS, and firewall products—some with public PoCs or active exploitation and unpatchable EoL models—prompting urgent firmware updates, mitigations, or device replacement.

List of posts related to this topic

Post TitleDate PublishedDescribes IncidentFeed
Zyxel Vulnerabilities Allow Remote Attackers to Execute Commands via Command Injection2026-02-26TrueGBHackers
Not Subscribed
Critical Zyxel router flaw exposed devices to remote attacks2026-02-25TrueSecurity Affairs
Not Subscribed
Zyxel warns of critical RCE flaw affecting over a dozen routers2026-02-25TrueBleeping Computer
Not Subscribed
Zyxel won’t patch newly exploited flaws in end-of-life routers2025-02-04TrueBleeping Computer
Not Subscribed
Unpatched Zyxel CPE Zero-Day Pummeled by Cyberattackers2025-01-29TrueDark Reading
Not Subscribed
Zyxel warns of critical OS command injection flaw in routers2024-09-03TrueBleeping Computer
Not Subscribed
Emergency patches released for critical vulns impacting EOL Zyxel NAS boxes2024-06-05TrueThe Register (Security)
Not Subscribed
Zyxel Releases Patches for Firmware Vulnerabilities in EoL NAS Models2024-06-05TrueThe Hacker News
Not Subscribed
Zyxel issues emergency RCE patch for end-of-life NAS devices2024-06-04TrueBleeping Computer
Not Subscribed
CVE-2022-305252022-05-17TrueArctic Wolf Blog
Not Subscribed

1–10 of 10

Zyxel security vulnerabilities