🔐 CVE Alert

CVE-2026-0420

UNKNOWN 0.0

Missing TLS certificate validation in NETGEAR's ReadyCloud client app

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
6th

An improper implementation of TLS certificate validation vulnerability found in NETGEAR's ReadyCloud client app which could allow an attacker to perform attacker-in-the-middle (MiTM) style attacks impacting the product's confidentiality. This vulnerability affects the listed NETGEAR models.

CWE CWE-325
Vendor netgear
Product rax120v1
Published Jun 9, 2026
Last Updated Jun 11, 2026
Stay Ahead of the Next One

Get instant alerts for netgear rax120v1

Be the first to know when new unknown vulnerabilities affecting netgear rax120v1 are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

NETGEAR / RAX120v1
0 < V1.2.9.52
NETGEAR / RAX120v2
0 < V1.2.9.52
NETGEAR / RAX35
0 < V1.0.6.106
NETGEAR / RAX38
0 < V1.0.6.106
NETGEAR / RAX40
0 < V1.0.6.106

References

NVD ↗ CVE.org ↗ EPSS Data ↗
netgear.com: https://www.netgear.com/support/product/rax35/ netgear.com: https://www.netgear.com/support/product/rax38/ netgear.com: https://www.netgear.com/support/product/rax40/ netgear.com: https://www.netgear.com/support/product/rax120v2/ kb.netgear.com: https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory

Credits

talsonor