{"schema_version":1,"title":"TP-Link TL-WR841N vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 8 vulnerabilities in TP-Link TL-WR841N: 0 in the last 7 days and 4 in the last 90 days, 3 of them critical and 3 exploited in the wild. The most recent, CVE-2026-76651, was published on 28 August 2026.","url":"https://junglewise.ai/threats/technologies/tl-wr841n","json_url":"https://junglewise.ai/threats/technologies/tl-wr841n.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/tl-wr841n","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":0,"all_time":8,"critical":3,"exploited":3,"last_7_days":0,"last_30_days":3,"last_90_days":4,"last_365_days":5},"latest":[{"cve":"CVE-2026-76651","epss":0.0044,"slug":"cve-2026-76651-tp-link-tl-wr841n-buffer-overflow-in-http-service","title":"TP-Link TL-WR841N buffer overflow in HTTP service","severity":"info","exploited":false,"published_at":"2026-08-28T22:16:53.503+00:00","url":"https://junglewise.ai/threats/cve-2026-76651-tp-link-tl-wr841n-buffer-overflow-in-http-service"},{"cve":"CVE-2026-76650","epss":0.0027,"slug":"cve-2026-76650-tp-link-tl-wr841n-v14-null-pointer-dereference-in-upnp","title":"TP-Link TL-WR841N v14 NULL pointer dereference in UPnP","severity":"info","exploited":false,"published_at":"2026-08-28T22:16:53.38+00:00","url":"https://junglewise.ai/threats/cve-2026-76650-tp-link-tl-wr841n-v14-null-pointer-dereference-in-upnp"},{"cve":"CVE-2026-76649","epss":0.0027,"slug":"cve-2026-76649-tp-link-tl-wr841n-null-pointer-dereference-in-upnp-service","title":"TP-Link TL-WR841N NULL pointer dereference in UPnP service","severity":"info","exploited":false,"published_at":"2026-08-28T22:16:53.25+00:00","url":"https://junglewise.ai/threats/cve-2026-76649-tp-link-tl-wr841n-null-pointer-dereference-in-upnp-service"},{"cve":"CVE-2026-9105","cvss":6.8,"slug":"cve-2026-9105-tp-link-tl-wr841n-stack-overflow-in-web-management-interface","title":"TP-Link TL-WR841N stack overflow in web management interface","severity":"info","exploited":false,"published_at":"2026-06-29T16:16:44.98+00:00","url":"https://junglewise.ai/threats/cve-2026-9105-tp-link-tl-wr841n-stack-overflow-in-web-management-interface"},{"cve":"CVE-2026-3227","cvss":6.8,"epss":0.011,"slug":"cve-2026-3227-tp-link-multiple-routers-os-command-injection-in-configuration","title":"TP-Link Multiple Routers OS command injection in configuration import","severity":"medium","exploited":false,"published_at":"2026-03-16T14:19:47.257+00:00","url":"https://junglewise.ai/threats/cve-2026-3227-tp-link-multiple-routers-os-command-injection-in-configuration"},{"cve":"CVE-2025-9377","cvss":7.2,"epss":0.3086,"slug":"cve-2025-9377-tp-link-archer-c7-and-tl-wr841n-os-command-injection-in-parental","title":"TP-Link Archer C7 and TL-WR841N OS command injection in Parental Control","severity":"critical","exploited":true,"published_at":"2025-09-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-9377-tp-link-archer-c7-and-tl-wr841n-os-command-injection-in-parental"},{"cve":"CVE-2023-50224","cvss":6.5,"epss":0.0146,"slug":"cve-2023-50224-tp-link-tl-wr841n-authentication-bypass-in-httpd-service","title":"TP-Link TL-WR841N authentication bypass in httpd service","severity":"critical","exploited":true,"published_at":"2025-09-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-50224-tp-link-tl-wr841n-authentication-bypass-in-httpd-service"},{"cve":"CVE-2023-33538","cvss":8.8,"epss":0.9057,"slug":"cve-2023-33538-tp-link-multiple-routers-command-injection-in-wlannetworkrpm","title":"TP-Link Multiple Routers command injection in WlanNetworkRpm","severity":"critical","exploited":true,"published_at":"2025-06-16T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-33538-tp-link-multiple-routers-command-injection-in-wlannetworkrpm"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":3},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"TP-Link Tapo C520WS","slug":"tapo-c520ws","vulnerabilities":13,"url":"https://junglewise.ai/threats/technologies/tapo-c520ws"},{"name":"TP-Link Archer AX53","slug":"archer-ax53","vulnerabilities":7,"url":"https://junglewise.ai/threats/technologies/archer-ax53"},{"name":"TP-Link Archer Ax53 Firmware","slug":"archer-ax53-firmware","vulnerabilities":7,"url":"https://junglewise.ai/threats/technologies/archer-ax53-firmware"},{"name":"TP-Link Multiple Routers","slug":"multiple-routers","vulnerabilities":6,"url":"https://junglewise.ai/threats/technologies/multiple-routers"},{"name":"TP-Link Tapo C520WS firmware","slug":"tapo-c520ws-firmware","vulnerabilities":6,"url":"https://junglewise.ai/threats/technologies/tapo-c520ws-firmware"},{"name":"TP-Link TL-MR6400","slug":"tl-mr6400","vulnerabilities":6,"url":"https://junglewise.ai/threats/technologies/tl-mr6400"},{"name":"TP-Link Archer MR600","slug":"archer-mr600","vulnerabilities":5,"url":"https://junglewise.ai/threats/technologies/archer-mr600"},{"name":"TP-Link Archer BE230","slug":"archer-be230","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/archer-be230"},{"name":"TP-Link Archer Be230 Firmware","slug":"archer-be230-firmware","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/archer-be230-firmware"},{"name":"TP-Link Archer BE3600","slug":"archer-be3600","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/archer-be3600"},{"name":"TP-Link Deco BE23","slug":"deco-be23","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/deco-be23"},{"name":"TP-Link Deco BE25","slug":"deco-be25","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/deco-be25"}],"technology":{"hub":true,"name":"TP-Link TL-WR841N","slug":"tl-wr841n","vendor":{"name":"TP-Link","slug":"tp-link","url":"https://junglewise.ai/threats/vendors/tp-link"},"aliases":[],"category":"firmware","homepage":"https://www.tp-link.com/en/home-networking/wifi-router/tl-wr841n/","description":"Firmware for the TP-Link TL-WR841N wireless N router.","url":"https://junglewise.ai/threats/technologies/tl-wr841n"},"most_severe":[{"cve":"CVE-2023-33538","cvss":8.8,"epss":0.9057,"slug":"cve-2023-33538-tp-link-multiple-routers-command-injection-in-wlannetworkrpm","title":"TP-Link Multiple Routers command injection in WlanNetworkRpm","severity":"critical","exploited":true,"published_at":"2025-06-16T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-33538-tp-link-multiple-routers-command-injection-in-wlannetworkrpm"},{"cve":"CVE-2025-9377","cvss":7.2,"epss":0.3086,"slug":"cve-2025-9377-tp-link-archer-c7-and-tl-wr841n-os-command-injection-in-parental","title":"TP-Link Archer C7 and TL-WR841N OS command injection in Parental Control","severity":"critical","exploited":true,"published_at":"2025-09-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-9377-tp-link-archer-c7-and-tl-wr841n-os-command-injection-in-parental"},{"cve":"CVE-2023-50224","cvss":6.5,"epss":0.0146,"slug":"cve-2023-50224-tp-link-tl-wr841n-authentication-bypass-in-httpd-service","title":"TP-Link TL-WR841N authentication bypass in httpd service","severity":"critical","exploited":true,"published_at":"2025-09-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-50224-tp-link-tl-wr841n-authentication-bypass-in-httpd-service"},{"cve":"CVE-2026-3227","cvss":6.8,"epss":0.011,"slug":"cve-2026-3227-tp-link-multiple-routers-os-command-injection-in-configuration","title":"TP-Link Multiple Routers OS command injection in configuration import","severity":"medium","exploited":false,"published_at":"2026-03-16T14:19:47.257+00:00","url":"https://junglewise.ai/threats/cve-2026-3227-tp-link-multiple-routers-os-command-injection-in-configuration"},{"cve":"CVE-2026-9105","cvss":6.8,"slug":"cve-2026-9105-tp-link-tl-wr841n-stack-overflow-in-web-management-interface","title":"TP-Link TL-WR841N stack overflow in web management interface","severity":"info","exploited":false,"published_at":"2026-06-29T16:16:44.98+00:00","url":"https://junglewise.ai/threats/cve-2026-9105-tp-link-tl-wr841n-stack-overflow-in-web-management-interface"},{"cve":"CVE-2026-76651","epss":0.0044,"slug":"cve-2026-76651-tp-link-tl-wr841n-buffer-overflow-in-http-service","title":"TP-Link TL-WR841N buffer overflow in HTTP service","severity":"info","exploited":false,"published_at":"2026-08-28T22:16:53.503+00:00","url":"https://junglewise.ai/threats/cve-2026-76651-tp-link-tl-wr841n-buffer-overflow-in-http-service"},{"cve":"CVE-2026-76650","epss":0.0027,"slug":"cve-2026-76650-tp-link-tl-wr841n-v14-null-pointer-dereference-in-upnp","title":"TP-Link TL-WR841N v14 NULL pointer dereference in UPnP","severity":"info","exploited":false,"published_at":"2026-08-28T22:16:53.38+00:00","url":"https://junglewise.ai/threats/cve-2026-76650-tp-link-tl-wr841n-v14-null-pointer-dereference-in-upnp"},{"cve":"CVE-2026-76649","epss":0.0027,"slug":"cve-2026-76649-tp-link-tl-wr841n-null-pointer-dereference-in-upnp-service","title":"TP-Link TL-WR841N NULL pointer dereference in UPnP service","severity":"info","exploited":false,"published_at":"2026-08-28T22:16:53.25+00:00","url":"https://junglewise.ai/threats/cve-2026-76649-tp-link-tl-wr841n-null-pointer-dereference-in-upnp-service"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}