CVE-2026-22225 | TP-Link Archer BE230 prior 1.2.4 Build 20251218 rel.70420 VPN Connection Service os command injection
A vulnerability classified as critical has been found in TP-Link Archer BE230. Impacted is an unknown function of the component VPN Connection Service. Performing a manipulation results in os command injection.
This vulnerability is known as CVE-2026-22225. Access to the local network is required for this attack. No exploit is available.
It is recommended to upgrade the affected component.