Skip to content
ThreatCluster

High-Severity Vulnerability in TP-Link TL-WR940N Router Exposed

First seen 4 Aug 2026, 02:19 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster August 4, 2026 at 23:54 UTC
  • CVE-2026-12935 allows remote code execution on TL-WR940N V6 routers.
  • The vulnerability has a CVSS score of 8.7, indicating high severity.
  • TP-Link has issued a security advisory urging users to secure their devices.

TP-Link has issued a security advisory for a critical vulnerability in its TL-WR940N V6 wireless router, identified as CVE-2026-12935. This flaw allows unauthenticated remote attackers to execute arbitrary code, potentially taking full control of affected devices. The vulnerability is linked to the router's RTSP connection tracking feature, which could lead to denial-of-service conditions or remote code execution under specific circumstances. The CVSS v4.0 score for this vulnerability is 8.7, categorizing it as high severity. Users of the TL-WR940N V6 router are advised to take immediate action to secure their devices. The vulnerability was published on July 29, 2026, and has raised significant concerns within the cybersecurity community. TP-Link's advisory emphasizes the urgency of addressing this issue to prevent exploitation.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 48d ago How this analysis works

Timeline

2026-07-29
CVE-2026-12935 published
TP-Link disclosed a high-severity vulnerability in the TL-WR940N V6 router, allowing remote code execution.
Cybersecuritynews
2026-08-03
TP-Link issues security advisory
TP-Link announced the vulnerability and its potential impact, urging users to secure their routers.
Gbhackers

More articles in this cluster (2)

Following this threat?

Track CVE-2026-12935 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed