CVE-2026-26673

An issue in DJI Mavic Mini, Spark, Mavic Air, Mini, Mini SE 0.1.00.0500 and below allows a remote attacker to cause a denial of service via the DJI Enhanced-WiFi transmission subsystem
References
Link Resource
https://github.com/ByteMe1001/DJI-CatNect Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dji:mavic_mini_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dji:mavic_mini:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:dji:spark_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dji:spark:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:dji:mini_se_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dji:mini_se:-:*:*:*:*:*:*:*

History

05 Mar 2026, 18:05

Type Values Removed Values Added
CPE cpe:2.3:o:dji:mavic_mini_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dji:spark:-:*:*:*:*:*:*:*
cpe:2.3:h:dji:mini_se:-:*:*:*:*:*:*:*
cpe:2.3:o:dji:spark_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dji:mavic_mini:-:*:*:*:*:*:*:*
cpe:2.3:o:dji:mini_se_firmware:*:*:*:*:*:*:*:*
First Time Dji mavic Mini
Dji mavic Mini Firmware
Dji spark
Dji
Dji spark Firmware
Dji mini Se Firmware
Dji mini Se
References () https://github.com/ByteMe1001/DJI-CatNect - () https://github.com/ByteMe1001/DJI-CatNect - Exploit, Third Party Advisory

04 Mar 2026, 18:16

Type Values Removed Values Added
CWE CWE-400
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

04 Mar 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-04 16:16

Updated : 2026-03-05 18:05


NVD link : CVE-2026-26673

Mitre link : CVE-2026-26673

CVE.ORG link : CVE-2026-26673


JSON object : View

Products Affected

dji

  • mavic_mini
  • mini_se
  • mavic_mini_firmware
  • spark
  • spark_firmware
  • mini_se_firmware
CWE
CWE-400

Uncontrolled Resource Consumption