SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityAnalyzed

CVE-2026-1996

Certain HP OfficeJet Pro printers may be vulnerable to potential denial of service when the IPP requests are mishandled, failing to establish a TCP connection.

MEDIUM 6.9EPSS 0.28%

Does this matter?

Lower severity and a low EPSS score (0.28%). Track it; it rarely justifies an emergency change on its own.

Description

Certain HP OfficeJet Pro printers may be vulnerable to potential denial of service when the IPP requests are mishandled, failing to establish a TCP connection.

CVSS 4.0
6.9 MEDIUMCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/M
EPSS
0.28% probability · 20th percentile
CISA KEV
Not listed
Weakness
CWE-703
Affected
hp/d9l18a firmware · hp/m9l66a firmware · hp/m9l67a firmware · hp/t0g46a firmware · hp/j6x76a firmware · hp/j6x78a firmware · hp/j6x80a firmware · hp/k7s37a firmware · hp/m9l70a firmware · hp/j6x77a firmware · hp/j6x81a firmware · hp/j6x79a firmware · hp/k7s38a firmware · hp/t0g47a firmware · hp/t0g48a firmware · hp/t0g49a firmware · hp/m9l65a firmware
Source
hp-security-alert@hp.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.