boxscore/security
VENDOR · referenceVendors · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

Tp-link Systems

Vendor reference — Tp-link Systems · sector: Other. Cumulative disclosure record across the archive.

Follow Tp-link Systems — Atom feed

Career totals

Disclosures & known-exploited
All-timeYTD
CVEs5857
KEV entries00
Rate & severity
KEV/100Med CVSSMed EPSSCHML
0.07.1.0028036220

KEV/100 = KEV entries ÷ CVEs × 100. Med CVSS / Med EPSS are medians over all disclosures. C/H/M/L = disclosures by CVSS severity band.

Monthly disclosures

Trend (by first-seen month, full archive): ▁▁▂▁▁▃▆▄█

Last 12 months (new CVEs by first-seen day)
MonthNew CVEs
2025-121
2026-010
2026-023
2026-031
2026-041
2026-055
2026-0616
2026-0710
2026-0821

Notable CVEs

Ranked by the published formula: KEV → EPSS → CVSS → CVE ID.

Notable (ranked)
CVECVSSEPSS %ileSeverityKEVFirst seen
CVE-2026-114098.585.3HIGH2026-06-16
CVE-2026-114108.585.3HIGH2026-06-16
CVE-2026-55098.583.1HIGH2026-05-27
CVE-2026-06318.569.6HIGH2026-02-02
CVE-2026-90448.563.8HIGH2026-07-31
CVE-2026-91518.562.2HIGH2026-06-10
CVE-2026-118348.760.8HIGH2026-06-22
CVE-2026-154288.560.2HIGH2026-07-14
CVE-2026-89138.557.1HIGH2026-06-08
CVE-2026-154295.155.1MEDIUM2026-07-14
CVE-2026-129358.754.0HIGH2026-07-29
CVE-2026-91056.853.9MEDIUM2026-06-29
CVE-2025-156087.748.0HIGH2026-03-20
CVE-2026-154278.643.8HIGH2026-07-14
CVE-2026-86978.741.4HIGH2026-05-28

Recent CVEs

Most recently seen
CVECVSSEPSS %ileSeverityKEVFirst seen
CVE-2026-756196.9MEDIUM2026-08-19
CVE-2026-756187.1HIGH2026-08-19
CVE-2026-153167.18.7HIGH2026-08-18
CVE-2026-153158.715.5HIGH2026-08-18
CVE-2026-151415.32.0MEDIUM2026-08-12
CVE-2025-302405.17.2MEDIUM2026-08-10
CVE-2025-302418.640.4HIGH2026-08-10
CVE-2025-302388.63.4HIGH2026-08-10
CVE-2025-302378.712.7HIGH2026-08-10
CVE-2026-123396.923.8MEDIUM2026-08-10
CVE-2025-302398.53.4HIGH2026-08-10
CVE-2026-90316.86.0MEDIUM2026-08-07
CVE-2026-90306.83.1MEDIUM2026-08-07
CVE-2026-153147.140.7HIGH2026-08-04
CVE-2025-92917.73.2HIGH2026-08-03

Products

This vendor's products with a reference page (≥2 disclosures), by CVE count. A monolithic vendor total dilutes signal; product pages sharpen it.

Products (by CVE count)
ProductCVEsKEV
Omada Gateways70
Omada Switches70
Tapo C520WS V260
EX220(BR) V1.0/1.20/1.28/1.29/1.850
EX220(BR) V2.050
EX220(EU1) V1.0/1.2050
EX220(RU) V1.050
EX220(US1) V1.050
EX222(EU1) V1.050
EX222(KR) V1.050
EX222(US1) V1.050
EX520v(EU1)1.050
EX820v(EU1) V1.050
EX920(US2) V1.6/V1.050
HB210 Pro(EU1)1.050
HB210 Pro(US2)1.0/1.650
HB210(EU1) 1.050
HB210(US2) 1.050
HB410( EU1) 1.050
HB610(CA) V2.050
HB610(EU1)50
HB610(US2) V2.6/2.050
HB710(EU1) 1.050
HB710(US2) V1.6/1.050
HB810(EU1) V2.050
HB810(US2) V1.0/1.6/2.0/2.650
Omada Controllers50
VX420-G2h(AU) V3.050
VX800v(DE) V1.050
XX530v(BR)v2.050
XX530v(EU1)50
EB810v(EU1) V1.040
VX1800v(EU1) V1.040
XC220-G3v(EU1) V2.3040
XC220-G3v(US1) V2.3040
XX230v(BR) V1.040
XX530v(BR)v1.040
XX530v(US1)40
Archer VX1800v V130
EB210 Pro(EU1) 1.030
EB210 Pro(US1) 1.030
EX141(BR) V1.0/1.930
EX141(EU1) V1.030
EX141(US1) V1.030
EX511(BR) V2.0/2.8/2.930
EX511(EU1) V2.030
EX511(US1) V2.030
EX520(US1) V1.030
EX521(US1) V1.030
HC220-G5(BR) V1.3030
HC220-G5(EU1) V1.20/1.030
HC220-G5(US1) V1.0/1.630
HX141(EU1) V1.030
HX220(AU) V1.030
HX220(CA) V1.030
HX220(EU1) V1.030
HX220(US1) V1.0/1.030
HX510(AU) V1.0/2.030
HX510(CA) V1.0/2.030
HX510(EU1) V2.030
HX510(US1) V2.030
HX510(US2) 2.630
HX710 Pro(EU1) V1.030
HX710(EU1) V1.030
Omada OLTs30
TL-WR940N V630
Tapo C200 V530
Archer A6 V420
Archer C20 V620
Kasa EC70 V420
Kasa EC71 V420
Tapo C100 V520
Tapo C101 V520
Tapo C260 V120
Tapo D235 V120

KEV entries

No entries in the CISA KEV catalog.

KEV timing

Fastest to KEV
CVEDays
Longest unpatched (KEV due date passed)
CVEDueDays over

Methodology

Rate statistics are arithmetic over published figures: KEV/100 = KEV entries ÷ CVEs × 100; medians are taken over this vendor's disclosures. Vendor names are normalized (case, punctuation, common aliases) before aggregation; monthly counts are keyed to first-seen day, the day this archive first observed the record, not the upstream publication date.

Raw counts are not comparable across vendors: disclosure practices, product breadth, and CNA conventions differ widely, so a larger number here does not mean less secure software. This is a reference page assembled from the public record — not a record of its own, and not a ranking of vendors by our judgment.

Sources. CVE records from the CVE Program (cvelistV5); enrichment from NVD (NIST); known-exploited status from the CISA KEV catalog; exploit probability from FIRST EPSS.