CVE-2026-22226 | TP-Link Archer BE230 prior 1.2.4 Build 20251218 rel.70420 VPN Server Configuration os command injection
A vulnerability classified as critical was found in TP-Link Archer BE230. The affected element is an unknown function of the component VPN Server Configuration Module. Executing a manipulation can lead to os command injection.
This vulnerability is handled as CVE-2026-22226. The attack can only be done within the local network. There is not any exploit available.
Upgrading the affected component is advised.