CVE-2026-9463Disclosure

LOWCVSS 7.4 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A flaw has been found in Edimax EW-7438RPn 1.31. Affected by this issue is the function formLicence of the file /goform/formLicence. This manipulation of the argument submit-url causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-05-24); latest day: 1
  • 3 total mentions across 3 days

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-05-24: 1Mentions · 2026-05-25: 1Mentions · 2026-07-27: 1PoC Mentioned / Linked · 2026-07-27: 1Patch / Workaround · 2026-07-27: 1Technical Details · 2026-07-27: 105-2405-2507-27
Signal classification3 categories
Disclosure
133.3%
General
133.3%
Patch
133.3%
Referenced assets2 URLs
By indicator
Classification over time
DateTotalLabels
2026-05-241
Disclosure1
2026-05-251
General1
2026-07-271
Patch1
Full discourse3 posts
  • DFIR Lab@DFIR_Lab
    Patch

    🚨 HIGH SEVERITY: CVE-2026-9463 (CVSS 8.8) Edimax EW-7438RPn 1.31 vulnerable to remote stack-based buffer overflow in formLicence function. Exploit publicly available. Vendor unresponsive. Patch/replace affected devices immediately. #CVE #Vulnerability #PatchNow https://t.co/rD8ipYA9rR

    Post summary

    A remote stack‑based buffer overflow (CVE‑2026‑9463) affects Edimax EW‑7438RPn routers; a public exploit exists, and users are urged to patch or replace devices immediately.

    0000045
    96 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-9463 A flaw has been found in Edimax EW-7438RPn 1.31. Affected by this issue is the function formLicence of the file /goform/formLicence. This manipulation of the argument s… https://www.cve.org/CVERecord?id=CVE-2026-9463

    Post summary

    The text provides a minimal notice of CVE-2026-9463 affecting Edimax EW-7438RPn, without details on exploitation, mitigation, or technical specifics.

    00000165
    57.5K followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    The severity is increased for this new vulnerability affecting Edimax EW-7438RPn (CVE-2026-9463) https://vuldb.com/vuln/365444

    Post summary

    The text announces that the severity of a new vulnerability (CVE‑2026‑9463) affecting the Edimax EW‑7438RPn has been increased, referencing a vulnerability database entry.

    0000066
    2.2K followersView on X

Explore more