TP-LINK has released patches for three high-severity vulnerabilities in the TL-MR6400 router (version 7 hardware), which could allow remote code execution or denial of service. Users are urged to update to firmware version 1.9.0 Build 260714 immediately. The vulnerabilities include CVE-2026-17250 (buffer overflow), CVE-2026-17251 (null pointer dereference), and CVE-2026-17252 (out-of-bounds write), each posing risks of unauthorized control or service crashes. Although no active exploits have been confirmed, these issues highlight significant risks to network security.
TP Link patches three flaws in TL MR6400 routers, urges update
CyberSIXT Evidence Panel
Article by CyberSIXT