High severity8.1NVD Advisory· Published Aug 13, 2026· Updated Sep 8, 2026
CVE-2026-18164
CVE-2026-18164
Description
An undocumented hard-coded credential, shared by all device units, is authorized to bypass authentication. This allows an attacker within Bluetooth range to arbitrarily manipulate brain stimulation parameters and state.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
1- Flow Neuroscience FL-100CISA Alerts