WSR-300HP vulnerabilities
CVEs whose affected-version data names the WSR-300HP package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-86530High· 7.2BUFFALO Wi-Fi products handle some web form input improperly to assemble command line strings internally
BUFFALO Wi-Fi products handle some web form input improperly to assemble command line strings internally. An administrative user may send a crafted HTTP request and execute an arbitrary OS command.
▾ TwilightBUFFALO INC. · WSR-300HPvia NVD
CVE-2026-95104High· 7.5Stack-based buffer overflow vulnerability exists in BUFFALO Wi-Fi products
Stack-based buffer overflow vulnerability exists in BUFFALO Wi-Fi products. A non-authenticated crafted HTTP request may cause a denial-of-service (DoS) condition.
▾ TwilightBUFFALO INC. · WSR-300HPvia NVD