CVE-2026-8676: high-severity vulnerability in silabs.com Simplicity SDK
Published
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.8epss 0.3%
exploitation probability
0.3%top 78% of all CVEs
observed exploitation
nono source reports it
An attacker is able to downgrade the security of a Bluetooth LE connection by deleting an existing bond, spoofing the bonded device and creating a new bond.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
silabs.com · Simplicity SDKRelated CVEs — silabs.com Simplicity SDK
In the same product, most dangerous first.
CVE-2025-14547LOWECJ-PAKE Integer Underflow Vulnerability in Silicon Labs PSA Crypto and SE Manager APIsEPSS 0.3%CVE-2025-8414CRITICALZigbee Green Power Host Buffer Overflow VulnerabilityEPSS 0.3%CVE-2024-6350MEDIUMEmberZNet malformed MAC layer packet leads to denial of serviceEPSS 0.3%CVE-2025-7432LOWDPA countermeasures not reseeded under certain conditionsEPSS 0.2%CVE-2025-14972MEDIUMInsufficient DPA countermeasure reseedingEPSS 0.1%CVE-2026-4930HIGHDPA Countermeasures weakening on Series 3 devicesEPSS 0.1%