Executive brief
HP HPLIP is a software suite that enables communication between HP printers and computers. Multiple vulnerabilities in HPLIP could allow remote attackers to execute code on affected systems, escalate privileges, disrupt service, leak sensitive information, or modify files without authorization. Organizations relying on HP printers should apply patches immediately.
Technical details
HP HPLIP contains multiple externally reported vulnerabilities affecting several software components. The vulnerabilities could enable remote code execution, privilege escalation, denial of service, information disclosure, and unauthorized file modification under certain conditions. Attack vectors and specific preconditions vary by individual vulnerability. HP has released patches to remediate these issues. The CVSS score of 9.8 indicates critical severity with network-based attack potential.
Affected products
- HP HPLIP
Timeline
- 2026-09-16: disclosed