linksys has 3 CVEs on record between 2022 and 2026. 1 was published in the last 90 days. The median CVSS is 9.8 (critical), with 2 rated critical. Most affected products: e1200_firmware (2), RE7000 (1).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 9.8
- Publish → KEV
- —
- Last 90 days
- 1 prev 0
Worst active — by depth score
CVE-2026-86299Critical· 9.9A vulnerability was detected in Linksys RE7000 2.0.1567CVE-2022-38555Critical· 9.8Linksys E1200 v1.0.04 is vulnerable to Buffer Overflow via ej_get_web_page_name.56CVE-2025-60689Medium· 5.4An unauthenticated command injection vulnerability exists in the Start_EPI function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz)45
linksys vulnerabilities
CVEs affecting linksys, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2026-86299Critical· 9.9PoCA vulnerability was detected in Linksys RE7000 2.0.15
A vulnerability was detected in Linksys RE7000 2.0.15. This affects the function platform_event_pingTest of the file /cgi-bin/json.cgi?PingTest of the component PingTest Handler. The manipulation of the argument pingTestIp/pingTestPktSiz…
CVE-2025-60689Medium· 5.4PoCAn unauthenticated command injection vulnerability exists in the Start_EPI function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz)
An unauthenticated command injection vulnerability exists in the Start_EPI function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The vulnerability occurs because user-supplied CGI parameters (wl…
CVE-2022-38555Critical· 9.8Linksys E1200 v1.0.04 is vulnerable to Buffer Overflow via ej_get_web_page_name.
Linksys E1200 v1.0.04 is vulnerable to Buffer Overflow via ej_get_web_page_name.