CVE-2025-11676: TP-Link System Inc Tl-WR940N v6

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper input validation vulnerability in TP-Link System Inc. TL-WR940N V6 (UPnP modules), which allows unauthenticated adjacent attackers to perform DoS attack. This issue affects TL-WR940N V6 <= Build 220801.

Affected products

Published 2025-11-20. Last modified 2026-06-17.