Spacex · Starlink Router Gen 3 · CVE-2026-19918
**Name of the Vulnerable Software and Affected Versions**
SpaceX Starlink Router Gen 3 version 2025.11.14.mr64708.3
**Description**
Improper access controls exist within the gRPC Management Interface component. An attacker located on the local network can manipulate the `get status()` function to bypass intended access restrictions.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
As a temporary workaround, restrict access to the gRPC Management Interface to minimize the risk of exploitation.