CVE-2026-17250: TP-Link Systems Inc Tl-MR6400 v7.0

High severity, CVSS 8.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A stack-based buffer overflow vulnerability exists in the firmware update functionality of TL-MR6400 v7 due to unsafe processing of attacker-controlled metadata within a firmware image. Successful exploitation may allow an authenticated attacker to trigger memory corruption and execute arbitrary code on the affected device.

Affected products

Published 2026-08-21. Last modified 2026-08-28.