CVE-2026-19397
Missing authentication for a critical function in ASUS Control Center Express Agent allows an unauthenticated nearby user to control the host via a direct connection to the agent when the host has an active login session. Refer to the ' Security Update for ASUS Control Center Express Agent ' section on the ASUS Security Advisory for more information.
- Published Sep 8, 2026
- CVSS 7.7 high
- 0.2% chance of exploitation in the next 30 days (EPSS)