CVE-2022-27152: Roku OS

Medium severity, CVSS 5.7. EPSS: 0.3% chance of exploitation in the next 30 days.

Roku devices running RokuOS v9.4.0 build 4200 or earlier that uses a Realtek WiFi chip is vulnerable to Arbitrary file modification.

Affected products

  • Roku Roku OS: up to and including 9.4.0

Published 2022-04-08. Last modified 2026-06-17.