By vendor

W1.Fi vulnerabilities

Known CVEs affecting W1.Fi products, prioritized by severity, with SEC.co remediation and detection guidance.

1 published vulnerability

  • CVE-2026-58374MEDIUM 6.5

    Hostapd, a widely-deployed open-source Wi-Fi access point management daemon, contains a memory safety bug in its Wi-Fi 7 (802.11be) Multi-Link Operation feature. An attacker within wireless range can send a specially crafted Wi-Fi management frame that causes the daemon to write data past the end of an allocated memory region. This happens during the initial connection phase, before any authentication occurs, and reliably crashes the hostapd process. The vulnerability requires only radio proximity and affects deployments running hostapd v2.11 and later versions built with Wi-Fi 7 support enabled.