VYPR

Unitree Go2

by Unitree Robotics

CVEs (2)

  • CVE-2026-27510CriFeb 26, 2026
    risk 0.62cvss 9.6epss 0.00

    Unitree Go2 firmware versions 1.1.7 through 1.1.11, when used with the Unitree Go2 Android application (com.unitree.doggo2), are vulnerable to remote code execution due to missing integrity protection and validation of user-created programmes. The Android application stores…

  • CVE-2026-1442HigFeb 27, 2026
    risk 0.51cvss 7.8epss 0.00

    Since the encryption algorithm used to protect firmware updates is itself encrypted using key material available to an attacker (or anyone paying attention), the firmware updates may be altered by an unauthorized user, and then trusted by a Unitree product, such as the Unitree…