Skip to content
D-Link Warns of Max Severity Zero-Day Bug in DIR-822A Routers

D-Link Warns of Max Severity Zero-Day Bug in DIR-822A Routers

Ground.News September 22, 2026

D-Link warned customers of a maximum-severity vulnerability (CVE-2026-86296) with public proof-of-concept (PoC) exploit code and no patch, affecting legacy DIR-822A dual-band Wi-Fi routers. [...]

D-Link Router Hit by CVSS 10.0 Flaw Exploitable Remotely Without Authentication

D-Link Systems has disclosed that it is investigating a critical security vulnerability in its DIR-822A router, tracked as CVE-2026-86296. The flaw has received the maximum CVSS severity score of 10.0. It may allow remote attackers to compromise vulnerable devices without authentication or user interaction. The issue affects the udhcpcd component in the reported DIR-822A firmware

100 % of the sources are Center

To view factuality data please Upgrade to Premium

To view ownership data please Upgrade to Vantage

Extracted Entities

Attack Types (1)

Companies (1)

Platforms (1)