CVE-2026-19291

Summary

Bluetooth re-pairing with an existing device can use a lower security level. RS9116W and SiWx91x impacted. See V3 in the BLERP paper linked below.

Affected Software

VendorProductVersion RangeStatus
silabs.comWiseConnect4.0.0 < 4.1.0affected
silabs.comWiseConnect2.0.0 < 2.14.0affected

Weaknesses

  • CWE-290: CWE-290 Authentication bypass by spoofing

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References