Back to advisories

TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover

Forescout disclosed 15 chained vulnerabilities in TP-Link Omada ZTP systems allowing unauthenticated attackers to achieve root command execution and full network takeover. Any organization running TP-Link Omada controllers and managed network devices is at risk. Patches are incomplete; structural flaws won't be fully resolved until late 2026.

CRITICALAdvisoryAug 06, 2026
Action required
Immediately inventory all TP-Link Omada deployments in your environment. Isolate Omada controllers from untrusted networks and apply available patches now. Monitor Omada controller logs for suspicious provisioning activity and unauthorized device enrollment.
Affected products
OmadaTP-LinkVIGIFestaTapo