CVE-2026-16101: Silabs.com Wiseconnect

High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Spoofing an already bonded device can force either RS9116W or SiWx917 to re-pair/bond with a rogue device. See V1 in BLERP paper below

Affected products

  • Silabs.com Wiseconnect: from 4.0.0, before 4.1.0 (fixed in 4.1.0); from 2.0.0, before 2.14.0 (fixed in 2.14.0)

Published 2026-08-13. Last modified 2026-09-08.