CVE-2026-62657: NETGEAR MR70
Medium severity, CVSS 4.9. EPSS: 0.2% chance of exploitation in the next 30 days.
A security flaw in the router's certificate validation process was discovered in the NETGEAR XR1000 Gaming Router and certain Nighthawk models that could allow an unauthorized person to remotely access and take control of the device.
Affected products
- NETGEAR MR70: before V1.0.4.48 (fixed in V1.0.4.48)
- NETGEAR MS70: before V1.0.4.48 (fixed in V1.0.4.48)
- NETGEAR RAXE500: before V1.2.14.114 (fixed in V1.2.14.114)
- NETGEAR XR1000: before V1.0.2.86 (fixed in V1.0.2.86)
Published 2026-07-14. Last modified 2026-07-15.