VYPR

Archer C60 Firmware

by TP-Link

CVEs (1)

  • CVE-2026-1571MedFeb 11, 2026
    risk 0.40cvss 6.1epss 0.00

    User-controlled input is reflected into the HTML output without proper encoding on TP-Link Archer C60 v3, allowing arbitrary JavaScript execution via a crafted URL. An attacker could run script in the device web UI context, potentially enabling credential theft, session…