CVE-2026-22225 | TP-Link Archer BE230 1.2.4 VPN Connection Service os command injection (EUVD-2026-5091)
A vulnerability classified as critical has been found in TP-Link Archer BE230 1.2.4. Impacted is an unknown function of the component VPN Connection Service. Performing a manipulation results in os command injection.
This vulnerability is known as CVE-2026-22225. Access to the local network is required for this attack. No exploit is available.
It is recommended to upgrade the affected component.