A vulnerability was found in TP-Link KP303 Smartplug up to 1.0.x. It has been classified as critical. This affects an unknown part. The manipulation leads to improper access controls.

This vulnerability is traded as CVE-2025-8627. Access to the local network is required for this attack to succeed. There is no exploit available.

Upgrading the affected component is recommended.