Get all your news in one place.
100's of premium titles.
One app.
Start reading
TechRadar
TechRadar
Efosa Udinmwen

Hidden debug code returns from the dead as TP-Link routers face a wave of new critical root access flaws

Concept art representing cybersecurity principles.
  • CVE-2025-7851 stems from residual debug code left in patched firmware
  • CVE-2025-7850 enables command injection through the WireGuard VPN interface
  • Exploiting one vulnerability made the other easier to trigger successfully

Two newly disclosed flaws in TP-Link’s Omada and Festa VPN routers have exposed deep-seated weaknesses in the company’s firmware security.

Sign up to read this article
Read news from 100's of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.