CVE-2025-9994Critical· 9.8▾ MidnightThe Amp’ed RF BT-AP 111 Bluetooth access point's HTTP admin interface does not have an authentication feature, allowing unauthorized access to anyone with network access.
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 53.9 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.5%
The Amp’ed RF BT-AP 111 Bluetooth access point's HTTP admin interface does not have an authentication feature, allowing unauthorized access to anyone with network access.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-9815High· 7.8A weakness has been identified in alaneuler batteryKid up to 2.1 on macOS
CVE-2025-10906High· 8.4A flaw has been found in Magnetism Studios Endurance up to 3.3.0 on macOS
CVE-2026-56675High· 8.39router /v1 APIs has unauthenticated access via reverse proxy locality collapse
CVE-2026-2756Medium· 5.0A security vulnerability has been detected in OmniPEMF NeoRhythm up to 20260308
CVE-2026-15192Medium· 6.5A vulnerability has been found in mettle sendportal up to 3.0.1
CVE-2026-55678MediumArc is an open, SQL-native time-series database for telemetry