CVE-2026-8153: exploitation status and patch state
CVE-2026-8153 · CVSS 9.8 CRITICAL · EPSS 2%
OS command injection in Dashboard Server interface in Universal Robots PolyScope versions prior to 5.25.1 allows unauthenticated attacker to craft commands that will execute code on the robot's OS.
Is CVE-2026-8153 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 2%.
Public exploit code: none found in monitored sources.