CVE-2026-9216

An insufficient input validation vulnerability in the listed NETGEAR RAX series models allows a network-adjacent attacker having network access (such as WiFi credentials) to crash the router's management UI. There is no confidentiality or integrity impact. A crash of the router's management UI does not impact the availability of the router's core services like WiFi network.

  • Published Sep 8, 2026
  • CVSS 1.2 low
  • 0.4% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-9216 at the National Vulnerability Database