Remote Code Execution Vulnerabilities in Unitree Go2 Robot
First seen 28 Feb 2026, 01:10 UTC
•
•71.1
Export
Article Content
Browse articles
Two critical vulnerabilities, CVE-2026-27509 and CVE-2026-27510, were identified in the Unitree Go2 robot. CVE-2026-27509 allows unauthenticated remote code execution via DDS, while CVE-2026-27510 involves mobile database tampering leading to remote code execution. Both vulnerabilities were published on 2026-02-26.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2026-02-26
CVE-2026-27509 and CVE-2026-27510 published
2026-02-27
Article published detailing vulnerabilities in Unitree Go2
2026-02-28
Further coverage of CVE-2026-27509 released
More articles in this cluster
Continue Reading
Google Addresses Unreported Chrome Zero-Day Vulnerability
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
Apple Fixes Zero-Day Vulnerability in Software Update
Cisco Fixes Critical AsyncOS Vulnerability Under Attack
CISA Directs Agencies to Address Gogs RCE Vulnerability Exploited in Zero-Day Attacks
Cisco Addresses AsyncOS Zero-Day Exploited by Threat Actors