{"slug":"asus-tuf-be9400","display_name":"TUF-BE9400","model_name":"TUF-BE9400","hardware_revision":"","region_code":"","category":"router","vendor":{"slug":"asus","name":"ASUS"},"verdict":{"status":"active","label":"Actively updated","confidence":"high","reason":"7 days since the last release against a median gap of 33 (0.2x)","algorithm_version":"lifecycle-1","computed_at":"2026-09-30T02:14:47.272517+00:00","thresholds":{"quiet_days":730,"active_max_days":365,"active_multiple":1.5,"slowing_multiple":3.0,"max_gap_dispersion":1.0,"high_confidence_releases":5,"min_releases_for_cadence":3,"never_updated_min_age_days":365}},"measurements":{"release_count":9,"first_release_date":"2025-09-26","last_release_date":"2026-09-23","days_since_last_release":7,"median_gap_days":33.0,"cadence_multiple":0.212,"observed_support":{"days":362,"is_floor":true,"measured_from":"first_release"},"promise":{"end_date":null,"is_estimated":false,"is_floor":false,"honoured":null,"basis":null},"cve_patch_latency_days":{"median":null,"measurable":false}},"releases":[{"version":"3.0.0.6.102_58500","channel":"stable","claimed_release_date":"2026-09-23","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-09-24T03:00:00.021426+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"This update includes a required change for the Speedtest service. If Speedtest is supported on your model, you must install this update to continue using it. Please refer to Speedtest Service Announcement for details.https://www.asus.com/support/faq/1057454/Supports Surfshark VPN account login for a smoother user experience. (Supported model only)Security FixesWeb management interface: Strengthened data handling for the connected device list and added stricter content checks when importing configuration profiles.Network speed test service: Added allowlist validation for service command parameters, so that only expected values are accepted.AiCloud: Strengthened the data handling mechanism for the network neighborhood host list.AiCloud: Improved how share link identifiers are generated, and adjusted the file and disk information query process.AiCloud: Strengthened authentication and path validation for remote file access.System protection service: Adjusted address parameter validation and event logging, strengthening access control between local services.Certificate import process: Adjusted file handling and password passing, with stricter parameter validation.Third-party account authorization: Narrowed the recipients of authorization data to better protect authorization information.Web management interface: Adjusted the output handling of feedback content.Notification service: Added identity verification for local connection sources and tightened the related file permission settings.Mobile device connection authorization: Added a device matching check to strengthen the access token issuance process.Device discovery service: Removed a non-essential internal function endpoint to strengthen overall access control.AiMesh: Adjusted data access protection during the node joining process, improving system stability while connections are being established.System temporary directory: Adjusted the default permissions applied at creation time to narrow local file access.Network diagnostic data query: Strengthened value range checks for time interval parameters.Network diagnostic data query: Added allowlist validation for query fields.Internal data query: Improved field matching logic and optimized the memory release process under error conditions.Time synchronization settings: Strengthened parameter validation for the server name.File upload handling: Fixed an issue where certain input formats could cause the web management service to become unresponsive.Wireless channel selection tool: Adjusted the handling of command parameters to prevent unintended command execution.Certificate upload: Added a pre-check of archive contents to prevent files from being written to unintended locations.System configuration file generation: Strengthened parameter content checks to prevent abnormal configuration values from affecting network service settings.VPN and account authentication services: Adjusted the handling of connection settings and account data, with stricter parameter validation.We recommend updating to this version to maintain optimal protection.","disclosure_score":0.55,"mentions_security":true,"cve_ids":[],"download_url":null,"evidence":{"id":203902,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-29T03:14:31.763910+00:00","observed_at":"2026-09-29T03:14:31.763910+00:00","http_status":200,"content_sha256":"6cec9e4591a83d7f41459cf538ac8b8a26b93476523582fb2f03e1f1a3cbc888","html":"//firmwarewatch.cc/evidence/203902","raw":"//firmwarewatch.cc/evidence/203902/raw"}},{"version":"3.0.0.6.102_58499","channel":"stable","claimed_release_date":"2026-09-21","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-09-23T03:00:00.028128+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"This update includes a required change for the Speedtest service. If Speedtest is supported on your model, you must install this update to continue using it. Please refer to Speedtest Service Announcement for details.https://www.asus.com/support/faq/1057454/Supports Surfshark VPN account login for a smoother user experience. (Supported model only)Security FixesWeb management interface: Strengthened data handling for the connected device list and added stricter content checks when importing configuration profiles.Network speed test service: Added allowlist validation for service command parameters, so that only expected values are accepted.System protection service: Adjusted address parameter validation and event logging, strengthening access control between local services.Certificate import process: Adjusted file handling and password passing, with stricter parameter validation.Third-party account authorization: Narrowed the recipients of authorization data to better protect authorization information.Web management interface: Adjusted the output handling of feedback content.Notification service: Added identity verification for local connection sources and tightened the related file permission settings.Mobile device connection authorization: Added a device matching check to strengthen the access token issuance process.Device discovery service: Removed a non-essential internal function endpoint to strengthen overall access control.AiMesh: Adjusted data access protection during the node joining process, improving system stability while connections are being established.System temporary directory: Adjusted the default permissions applied at creation time to narrow local file access.Network diagnostic data query: Strengthened value range checks for time interval parameters.Network diagnostic data query: Added allowlist validation for query fields.Internal data query: Improved field matching logic and optimized the memory release process under error conditions.Time synchronization settings: Strengthened parameter validation for the server name.File upload handling: Fixed an issue where certain input formats could cause the web management service to become unresponsive.Wireless channel selection tool: Adjusted the handling of command parameters to prevent unintended command execution.Certificate upload: Added a pre-check of archive contents to prevent files from being written to unintended locations.System configuration file generation: Strengthened parameter content checks to prevent abnormal configuration values from affecting network service settings.VPN and account authentication services: Adjusted the handling of connection settings and account data, with stricter parameter validation.We recommend updating to this version to maintain optimal protection.","disclosure_score":0.55,"mentions_security":true,"cve_ids":[],"download_url":null,"evidence":{"id":182735,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-23T03:07:08.124786+00:00","observed_at":"2026-09-23T03:07:08.124786+00:00","http_status":200,"content_sha256":"f10e63fe13fa0ad8f4346e7e2308694457c7c5ee235e6662e75716eb39029c41","html":"//firmwarewatch.cc/evidence/182735","raw":"//firmwarewatch.cc/evidence/182735/raw"}},{"version":"3.0.0.6.102_58436","channel":"stable","claimed_release_date":"2026-08-24","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-08-25T03:00:00.047509+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"New Features- LED Lighting Scheduler: Added scheduling support for LED lighting, so lighting can turn on or off automatically on a custom schedule. (Available only on supported models.)- New Time Zone Options: Added \"Vancouver, Whitehorse (PST7)\" and \"Edmonton, Yellowknife (MST6)\" time zone options for Canada.Bug Fixes and Enhancements- Improved MAC address display logic on the WDS (wireless bridge) page, fixing cases where the band name and its MAC address were shown incorrectly.- Fixed an issue where Client List sorting could stop working under certain conditions, and removed a duplicate wired device card in the \"By Interface\" view.- Optimized the IPv6 address design for Networks.- Improved handling of unstable network cables.- Improved stability during the AiMesh node setup process.- Improved the reconnection process for IPv6 Plus (Japan) after a reboot or disconnect.- Improved IPv6 Option handling, including network connectivity after a reboot following a direct firmware upgrade in certain scenarios.- Fixed an issue where a physical LAN port could disappear after the setup process when using the automatic WAN type detection mechanism.- Improved AP Isolation synchronization for Networks profiles that don't use a dedicated subnet.- Strengthened firewall rule configuration for UPnP, improving port-forwarding stability and firewall rule restoration reliability.- Improved Network stylesheet loading reliability.- Fixed an issue where the URL-forwarding utility could become unresponsive after an internal network component update.Security Fixes- Strengthened data handling in Networks configuration functions.- Improved data validation in Networks rule list processing.- Fixed a data-handling issue in the DNS query caching component.- Strengthened verification when a software component downloads external resources, improving connection security.- Adjusted the information response mechanism of the device discovery service, strengthening protection of device information.- Fixed a data-handling issue in a firmware component on a specific model.- Improved data-display handling in a web function to enhance browsing security.- Strengthened input data validation in a device-pairing web function.- Improved data validation in the configuration file upload/sync function.- Improved how the account service restart process is handled.- Removed a non-essential internal function endpoint, strengthening overall access control.- Adjusted the debug file access mechanism, strengthening protection of internal data.- Strengthened data handling in the system logging function.We recommend upgrading to this version to maintain optimal protection","disclosure_score":0.45,"mentions_security":true,"cve_ids":[],"download_url":null,"evidence":{"id":203902,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-29T03:14:31.763910+00:00","observed_at":"2026-09-29T03:14:31.763910+00:00","http_status":200,"content_sha256":"6cec9e4591a83d7f41459cf538ac8b8a26b93476523582fb2f03e1f1a3cbc888","html":"//firmwarewatch.cc/evidence/203902","raw":"//firmwarewatch.cc/evidence/203902/raw"}},{"version":"3.0.0.6.102_58390","channel":"stable","claimed_release_date":"2026-07-17","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-08-02T11:15:35.628116+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"Bug Fixes and Enhancements：- Enhanced overall firmware stability for a smoother user experience.- Improved Android device connectivity when IPv6 is enabled on Smart Home Master.- Optimized the layout and display of the Client List for better readability.- Refined network compatibility and stability under specific WAN Types.- Enhanced remote connection stability for a more reliable management experience.","disclosure_score":0.37,"mentions_security":false,"cve_ids":[],"download_url":null,"evidence":{"id":203902,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-29T03:14:31.763910+00:00","observed_at":"2026-09-29T03:14:31.763910+00:00","http_status":200,"content_sha256":"6cec9e4591a83d7f41459cf538ac8b8a26b93476523582fb2f03e1f1a3cbc888","html":"//firmwarewatch.cc/evidence/203902","raw":"//firmwarewatch.cc/evidence/203902/raw"}},{"version":"3.0.0.6.102_58305","channel":"stable","claimed_release_date":"2026-05-06","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-08-02T11:15:35.628116+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"Security Fixes- Enhanced system security by addressing an unsafe remote script execution mechanism in.- Improved system security by addressing a heap buffer overflow vulnerability during cache handling. We recommend upgrading to this version to ensure up-to-date protection.","disclosure_score":0.4,"mentions_security":true,"cve_ids":[],"download_url":null,"evidence":{"id":203902,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-29T03:14:31.763910+00:00","observed_at":"2026-09-29T03:14:31.763910+00:00","http_status":200,"content_sha256":"6cec9e4591a83d7f41459cf538ac8b8a26b93476523582fb2f03e1f1a3cbc888","html":"//firmwarewatch.cc/evidence/203902","raw":"//firmwarewatch.cc/evidence/203902/raw"}},{"version":"3.0.0.6.102_58303","channel":"stable","claimed_release_date":"2026-04-16","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-08-02T11:15:35.628116+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"Improvements:Optimized Wi-Fi roaming stability for devices supporting 802.11k but not allowing 11v.Improved Wi-Fi roaming compatibility and stability for iOS 26 devices.Refined accessibility-related UI and interaction details.Improved overall remote connection stability.Improved system behavior when using System diagnostic on feedback page.Bug Fixes:Fixed incorrect connection status display for certain Wi-Fi devices.Fixed main network connectivity issue when enabling IPv6 for both the main network and Smart Home Master.Security Enhancements:Strengthened input sanitization mechanismEnhanced system API validation for stronger protection consistency.Strengthened command handling and system resource access controls.Improved system logging and security event recording mechanisms.","disclosure_score":0.41,"mentions_security":true,"cve_ids":[],"download_url":null,"evidence":{"id":203902,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-29T03:14:31.763910+00:00","observed_at":"2026-09-29T03:14:31.763910+00:00","http_status":200,"content_sha256":"6cec9e4591a83d7f41459cf538ac8b8a26b93476523582fb2f03e1f1a3cbc888","html":"//firmwarewatch.cc/evidence/203902","raw":"//firmwarewatch.cc/evidence/203902/raw"}},{"version":"3.0.0.6.102_58160","channel":"stable","claimed_release_date":"2026-01-20","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-08-02T11:15:35.628116+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"Bug Fixes and Enhancements: - Ensures all Ethernet-connected devices and client counts are correctly displayed in the client list. - Improved the stability of IoT device connections. - Resolved an issue that prevented offline devices from being removed from the client list. - Fixed network instability issues caused by MAC Filter.","disclosure_score":0.36,"mentions_security":false,"cve_ids":[],"download_url":null,"evidence":{"id":203902,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-29T03:14:31.763910+00:00","observed_at":"2026-09-29T03:14:31.763910+00:00","http_status":200,"content_sha256":"6cec9e4591a83d7f41459cf538ac8b8a26b93476523582fb2f03e1f1a3cbc888","html":"//firmwarewatch.cc/evidence/203902","raw":"//firmwarewatch.cc/evidence/203902/raw"}},{"version":"3.0.0.6.102_58138","channel":"stable","claimed_release_date":"2025-10-23","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-08-02T11:15:35.628116+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"- Enhanced system stability.- Enhanced input validation and refactored legacy string handling routines to ensure robust memory management.- Implemented comprehensive validation and expanded command filtering in the web history API.- Strengthened input validation and directory handling in the VPN configuration upload interface.- Fixed an issue that allowed certain user settings to be bypassed, improving overall user control and protection.","disclosure_score":0.37,"mentions_security":false,"cve_ids":[],"download_url":null,"evidence":{"id":203902,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-29T03:14:31.763910+00:00","observed_at":"2026-09-29T03:14:31.763910+00:00","http_status":200,"content_sha256":"6cec9e4591a83d7f41459cf538ac8b8a26b93476523582fb2f03e1f1a3cbc888","html":"//firmwarewatch.cc/evidence/203902","raw":"//firmwarewatch.cc/evidence/203902/raw"}},{"version":"3.0.0.6.102_58121","channel":"stable","claimed_release_date":"2025-09-26","claimed_date_precision":"day","is_vendor_dated":true,"first_observed_at":"2026-08-02T11:15:35.628116+00:00","observation_kind":"live_crawl","withdrawn_at":null,"changelog":"Initial firmware release","disclosure_score":0.3,"mentions_security":false,"cve_ids":[],"download_url":null,"evidence":{"id":203902,"source_url":"https://www.asus.com/networking-iot-servers/wifi-routers/asus-gaming-routers/tuf-gaming-be9400/helpdesk_bios?model2Name=TUF-Gaming-BE9400","fetched_at":"2026-09-29T03:14:31.763910+00:00","observed_at":"2026-09-29T03:14:31.763910+00:00","http_status":200,"content_sha256":"6cec9e4591a83d7f41459cf538ac8b8a26b93476523582fb2f03e1f1a3cbc888","html":"//firmwarewatch.cc/evidence/203902","raw":"//firmwarewatch.cc/evidence/203902/raw"}}],"identifiers":[{"kind":"marketing_name","value":"TUF-BE9400","normalized":"tuf be9400"}],"revisions":[],"evidence":{"archived_pages":2,"first_observed_at":"2026-08-02T11:15:35.628116+00:00"},"caveats":["observed_support.days is a lower bound: it runs from the first firmware we saw, because no source here publishes launch dates.","Patch latency is not computable for this product: its changelogs name no CVE ids."],"links":{"html":"//firmwarewatch.cc/devices/asus-tuf-be9400","self":"//firmwarewatch.cc/api/v1/products/asus-tuf-be9400.json","vendor":"//firmwarewatch.cc/api/v1/vendors/asus.json","feed":"//firmwarewatch.cc/feeds/devices/asus-tuf-be9400.xml","methodology":"//firmwarewatch.cc/api/v1/methodology.json"}}