CVE-2026-1571 – Reflected XSS Vulnerability on TP-Link Archer C60

CVE ID : CVE-2026-1571

Published : Feb. 11, 2026, 1:15 a.m. | 1 hour, 7 minutes ago

Description : User-controlled input is reflected into the HTML output without proper encoding on TP-Link Archer C60 v3, allowing arbitrary JavaScript execution via a crafted URL. An attacker could run script in the device web UI context, potentially enabling credential theft, session hijacking, or unintended actions if a privileged user is targeted.

Severity: 5.3 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه