Skip to content
Critical CVE-2026-86296 Flaw Found in D-Link DIR-822A Routers

Critical CVE-2026-86296 Flaw Found in D-Link DIR-822A Routers

First seen 22 Sep 2026, 20:28 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 22, 2026 at 21:59 UTC
  • CVE-2026-86296 is a critical vulnerability with a CVSS score of 10.0.
  • The flaw allows remote exploitation without authentication, posing a severe risk.
  • Public proof-of-concept exploits are available, increasing the likelihood of attacks.

D-Link has disclosed a critical security vulnerability in its DIR-822A routers, tracked as CVE-2026-86296, which has a CVSS score of 10.0. This stack-based buffer overflow flaw allows remote attackers to exploit the device without authentication or user interaction. The vulnerability affects the udhcpcd component of the router's firmware, enabling attackers to send crafted DHCP packets that can lead to device crashes or unauthorized code execution. A public proof-of-concept exploit has been released, increasing the risk of active exploitation. Additionally, another critical vulnerability, CVE-2026-86510, has been identified in the same router model, which also has a public PoC available. D-Link is currently investigating both vulnerabilities and has not yet released patches. Users are advised to restrict remote management access and monitor for firmware updates. The vulnerabilities primarily affect devices exposed to the internet.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-09-07
CVE-2026-86296 published
D-Link disclosed a critical vulnerability in DIR-822A routers, allowing remote exploitation.
cybernoz.com
2026-09-08
CVE-2026-86510 published
D-Link reported a second critical vulnerability affecting the same router model, also with a PoC.
cybernoz.com
2026-09-20
CVE-2026-94036 published
A separate vulnerability was discovered in D-Link DIR-X1860 routers, affecting local network access.
Redpacketsecurity
2026-09-22
D-Link issues warning on vulnerabilities
D-Link advised customers to secure their DIR-822A routers due to the critical vulnerabilities.
Bleepingcomputer

More articles in this cluster (9)

Following this threat?

Track D-Link Systems and CVE-2026-86296 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed