Scworld Bluetooth Vulnerability in Zero Motorcycles Poses Safety Risks
Article Content
- •CVE-2026-1354 allows Bluetooth access to Zero Motorcycles, risking rider safety.
- •Attackers can upload malicious firmware affecting critical vehicle functions.
- •A firmware patch is expected in May 2026; users should secure their bikes in the meantime.
A vulnerability (CVE-2026-1354) affecting electric motorcycles from Zero Motorcycles has been identified, allowing attackers within Bluetooth range to gain unauthorized access to the vehicle's Bluetooth functions. This flaw, present in firmware version 44 and earlier, enables malicious firmware uploads that could manipulate critical safety features such as torque output and regenerative braking, potentially leading to dangerous vehicle behavior at high speeds. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has classified this vulnerability as medium severity. A firmware update is expected to be released in May 2026 to address this issue. Users are advised to secure their motorcycles by connecting them to their phones in safe locations to prevent unauthorized access. Additionally, a separate but related vulnerability affecting Yadea scooters has been reported, highlighting broader security concerns in electric vehicles.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Bureau Veritas Cybersecurity and CVE-2025-70994 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…