High
CVE-2022-40620
FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS ce…
High
CVE-2022-40619
FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the L…
Medium
CVE-2026-0408
A path traversal vulnerability in NETGEAR WiFi range extenders allows
an attacker with LAN authentication to access the…
Low
CVE-2026-0403
An insufficient input validation vulnerability in NETGEAR Orbi routers
allows attackers connected to the router's LAN t…
Medium
CVE-2026-0404
An insufficient input validation vulnerability in NETGEAR Orbi devices'
DHCPv6 functionality allows network adjacent at…
Medium
CVE-2026-0405
An authentication bypass vulnerability in NETGEAR Orbi devices allows
users connected to the local network to access th…