A command-injection flaw in the Linksys E1700 router disclosed in August 2025 with a public exploit. The vendor did not respond to the original report. NVD's CVSS vector rates the flaw as requiring high privileges. It is used by the Dysphoria IoT botnet for propagation.