
This vuln I reported has been disclosed by #zyxel today: CVE-2026-1460 7.2 Post auth command injection for 45 platforms (4G LTE/5G NR CPE, DSL/Ethernet, CPE Fiber ONTs, Wireless Extenders) Details and affected listed here: https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-command-injection-vulnerabilities-in-certain-4g-lte-5g-nr-cpe-dsl-ethernet-cpe-fiber-onts-and-wireless-extenders-04-28-2026 https://t.co/5qISVJHAPe
Post summary
A newly disclosed command injection vulnerability (CVE-2026-1460) affecting 45 Zyxel platforms is announced, with the advisory providing technical details but no exploit, patch, or active exploitation evidence.

