Skip to main content
Loading…
    CVE-2026-0653 — On TP-Link Tapo C260 v1 and D235 v1, a guest‑level authenticated user can bypass intended access restrictions by sending crafted requests to a synchronization endpoint. This allows modification of pro — CVE Database · The Intelligence Room