CVE-2025-9292 | TP-Link Omada Cloud Controller cross-domain policy
A vulnerability was found in TP-Link Omada Cloud Controller. It has been classified as problematic. The impacted element is an unknown function. This manipulation causes permissive cross-domain policy with untrusted domains.
This vulnerability is tracked as CVE-2025-9292. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.