VulnSea

zyxel has 5 CVEs on record between 2017 and 2026. The busiest recent month was April 2026 with 3. The median CVSS is 7.2 (high). 40% have been exploited in the wild — well above the 1% corpus average, so zyxel flaws are worth patching on sight. The most common weakness class is CWE-78 (3).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
40% vs 1% corpus
Median CVSS
7.2
Publish → KEV
(2)
Last 90 days
0 prev 3

Products

  • emg2926_firmware 1
  • nebula_fwa70_firmware 1
  • nr5307_firmware 1
  • wre6505_firmware 1
  • zld 1
5
Total CVEs
0
Critical
2
CISA KEV
2
Exploited

zyxel vulnerabilities

CVEs affecting zyxel, newest first. Open any entry for full detail, references, and exploit status.

5 CVEsRSS

CVE-2026-1460High· 7.2
4mo ago

A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated attacker with adm…

A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated attacker with adm…

Twilightzyxel · nebula_fwa70_firmwareEPSS 1.2%via NVD
CVE-2026-0711Medium· 6.8
4mo ago

A post-authentication command injection vulnerability in the EasyMesh-related APIs of Zyxel DX3300-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated, adjacent attacker with administrator privileges to execute OS …

A post-authentication command injection vulnerability in the EasyMesh-related APIs of Zyxel DX3300-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated, adjacent attacker with administrator privileges to execute OS …

Sunlitzyxel · nr5307_firmwareEPSS 0.85%via NVD
CVE-2026-6058Medium· 4.5
5mo ago

** UNSUPPORTED WHEN ASSIGNED ** An improper encoding or escaping vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the WLAN to cause a denial-of-service (DoS) condit…

** UNSUPPORTED WHEN ASSIGNED ** An improper encoding or escaping vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the WLAN to cause a denial-of-service (DoS) condit…

Sunlitzyxel · wre6505_firmwareEPSS 0.18%via NVD
CVE-2024-11667High· 7.5CISA KEV
1y ago

A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX series firmware versions V5.00 through V5.38, USG FLEX 50(W) series firmware versions V5.10 through V…

A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX series firmware versions V5.00 through V5.38, USG FLEX 50(W) series firmware versions V5.10 through V…

Abyssalzyxel · zldEPSS 2.9%via NVD
CVE-2017-6884High· 8.8CISA KEVPoC
9y ago

A command injection vulnerability was discovered on the Zyxel EMG2926 home router with firmware V1.00(AAQT.4)b8

A command injection vulnerability was discovered on the Zyxel EMG2926 home router with firmware V1.00(AAQT.4)b8. The vulnerability is located in the diagnostic tools, specifically the nslookup function. A malicious user may exploit numer…

Abyssalzyxel · emg2926_firmwareEPSS 34%via NVD
zyxel vulnerabilities (CVEs) · VulnSea