chiprook
← Security
SecuritySeptember 22, 2026, 19:48

D-Link warns of max severity zero-day in DIR-822A routers

D-Link disclosed a maximum-severity flaw (CVE-2026-86296) in legacy DIR-822A routers: a stack-based buffer overflow in the udhcpcd DHCP server that can be exploited without authentication. No patch exists and a public PoC is available; D-Link is also investigating a second flaw, CVE-2026-86510, in the L2TP parser.

D-Link warns of max severity zero-day in DIR-822A routers
#D-Link#DIR-822A
Read next
Security

AI helps attackers more than defenders, says UK's NCSC

Security

Darktrace makes SECURE AI generally available to monitor enterprise AI use

Security

Barracuda launches AI Data Security to control employee chatbot use

Security

ISACA: 71% of Organizations Have Never Run an AI Incident Response Exercise