← Back to Feed

Unpatched Calix flaw lets hackers bypass NAT to expose internal devices

August 24, 2026 · BleepingComputer · Severity: HIGH

An unpatched vulnerability in Calix GS7 XGS (GS5239XG) residential routers used by multiple U.S. broadband providers allows remote, unauthenticated attackers to create port-forwarding rules that can expose local network devices to the public internet.

Key Takeaways

  • Unpatched Calix router flaw enables remote attackers to bypass NAT and expose internal devices.
  • The vulnerability allows unauthenticated creation of port-forwarding rules, risking public internet access.
  • Multiple U.S. broadband providers are affected, leaving millions of residential networks vulnerable to exploitation.
☕ Buy a Coffee