Patch · published Ongoing · last verified 17 August 2026

Published vulnerabilities including code execution and denial of service

Code execution, information disclosure, denial of service, buffer overflow and WLAN-driver issues.

Scope caveat: Use the relevant dated advisory for the exact model rather than a general brand warning.

Affected products
DrayTek Vigor routers, access points and switches
Hardware revisions
Varies per advisory
Firmware range
Varies per advisory
Threat
Published vulnerabilities including code execution and denial of service
CVE references
Multiple
Impact
Code execution, information disclosure, denial of service, buffer overflow and WLAN-driver issues.
Conditions required
Depends on the exact model and firmware.
Vendor response
DrayTek PSIRT publishes dated advisories and fixed firmware.
Consumer action
Match the exact model to its advisory and use official firmware only.
Status
Vendor register
Source type
Vendor