CVE-2026-30704

Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.

The WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) exposes an unprotected UART interface through accessible hardware pads on the PCB

Published 2026-03-18. Last modified 2026-06-17.