Known Vulnerabilities for Tapo App by TP-Link Systems Inc.
Listed below are 10 of the newest known vulnerabilities associated with "Tapo App" by "TP-Link Systems Inc.".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-75619 json | Tapo C100/C101 V5 contains a heap-based buffer overflow vulnerability in the RTSP service. An authenticated attacker on the l... | Not Provided | 2026-08-19 | 2026-08-27 |
| CVE-2026-75618 json | Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker on the local network can... | Not Provided | 2026-08-19 | 2026-08-27 |
| CVE-2026-34123 json | On Tapo C520WS v2, restricted accounts (for example, hub users) are intended to execute only a limited set of low‑sensitivi... | Not Provided | 2026-06-06 | 2026-06-08 |
| CVE-2026-34118 json | A heap-based buffer overflow vulnerability was identified in TP-Link Tapo C100/C101 v5, C520WS v2.6 in the HTTP POST body pa... | Not Provided | 2026-04-02 | 2026-08-19 |
| CVE-2026-15316 json | An improper input validation vulnerability in the configuration service for processing encrypted credential data has been ide... | Not Provided | 2026-08-18 | 2026-08-20 |
| CVE-2026-15315 json | Tapo C120 v1 and C200 v5 contain an improper authentication vulnerability within the login authentication verification module... | Not Provided | 2026-08-18 | 2026-08-27 |
| CVE-2026-15314 json | Tapo P110 v1 smart Wi-Fi Plug contains an improper boundary validation vulnerability in the handling of authenticated HTTP re... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-12760 json | A denial-of-service (DoS) vulnerability has been identified in Tapo C200 v3 in the network packet handling logic due to impro... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-8714 json | A denial-of-service vulnerability exists in the RTSP server component of TP-Link Tapo C520WS v2 due to improper handling of s... | Not Provided | 2026-06-05 | 2026-06-05 |
| CVE-2026-6250 json | An authenticated format string vulnerability exists in the ONVIF service of Tapo C110 v2 due to improper handling of user-con... | Not Provided | 2026-06-11 | 2026-06-12 |