CVE List

CVE-2025-9014

Critical 7.5

A Null Pointer Dereference vulnerability exists in the referer header check of the web portal of TP-Link TL-WR841N v14, caused by improper input validation.  A remote, unauthenticated attacker can exploit this flaw and cause Denial of Service on the web portal service.This issue affects TL-WR841N v14: before 250908.

Published January 15, 2026.

Affected software

Get alerts for Tp-link Tl-wr841n Firmware

Reference links