CVE-2026-19291: Bluetooth re-pairing can use a lower security level than previous
Published Aug 13, 2026
·Updated
Bluetooth re-pairing with an existing device can use a lower security level. RS9116W and SiWx91x impacted. See V3 in the BLERP paper linked below.
Affected Software
2 affected components
RS9116W
SiWx91x
Event History
Aug 13, 2026
CVE Published
via MITRE·02:16 PM
Data Sourced
via MITRE·02:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-19291?
CVE-2026-19291 has a severity level of high with a score of 8.8.
2
What are the impacted devices of CVE-2026-19291?
CVE-2026-19291 affects the RS9116W and SiWx91x Bluetooth devices.
3
How does CVE-2026-19291 affect Bluetooth security?
CVE-2026-19291 allows Bluetooth re-pairing to use a lower security level than previously established.
4
How can I mitigate the risks associated with CVE-2026-19291?
To mitigate CVE-2026-19291, ensure that your Bluetooth devices are configured to reject lower security levels during re-pairing.
5
When was CVE-2026-19291 published?
CVE-2026-19291 was published on August 13, 2026.