D-Link recommends replacing the DIR-822A routers with supported hardware due to the lack of a patch. Users should disconnect legacy devices from the network if replacement is not immediately possible. Monitor D-Link advisories for any future security updates.
Quick answers
What is CVE-2026-86296?
D-Link recommends replacing the DIR-822A routers with supported hardware due to the lack of a patch. Users should disconnect legacy devices from the network if replacement is not immediately possible. Monitor D-Link advisories for any future security updates.
How severe is CVE-2026-86296?
critical
Is CVE-2026-86296 known to be exploited?
It is not marked known-exploited in this record.
How should CVE-2026-86296 be mitigated?
D-Link recommends replacing the DIR-822A routers with supported hardware due to the lack of a patch. Users should disconnect legacy devices from the network if replacement is not immediately possible. Monitor D-Link advisories for any future security updates.
CVSS
—
Vendor
D-Link
Published
Sep 30, 2026 · 08:05
Patch
Unknown / not confirmed
Affected products
DIR-822A
Mitigation
D-Link recommends replacing the DIR-822A routers with supported hardware due to the lack of a patch. Users should disconnect legacy devices from the network if replacement is not immediately possible. Monitor D-Link advisories for any future security updates.
D-Link has alerted users to a maximum-severity vulnerability in the DIR-822A dual-band Wi-Fi router. The flaw, tracked as CVE-2026-86296, has public proof-of-concept exploit code available but no patch has been released. The affected devices are end-of-life legacy hardware, and D-Link recommends replacing them due to the lack of a fix path.