# CVE-2026-76639 — Unitree Robotics G1 EDU

> As of 2026-08-27, CVE-2026-76639 is a HIGH-severity vulnerability in Unitree Robotics G1 EDU, CVSS v3.1 8.8, EPSS 0.7% (51.1th percentile). Threadlinqs Intelligence links 1 tracked threat campaign to CVE-2026-76639, most recently “UniBLEed: Unauthenticated Root RCE Chain Over Bluetooth in Unitree G1 EDU Humanoid Robot (CVE-2026-76639, CVE-2026-76640)”.

**Last updated:** 2026-08-27

## What is CVE-2026-76639?

Unitree G1 EDU firmware through 1.5.2 contains an unauthenticated remote code execution vulnerability that allows network-adjacent attackers to execute arbitrary commands as root by chaining three weaknesses: an unauthenticated WebRTC-to-DDS bridge on TCP port 9991, a static AES-128 key stored with world-readable permissions, and a path traversal flaw in the chat_go knowledge upload API. Attackers can publish DDS control messages to restart the bashrunner service, plant a malicious payload in its script execution directory via path traversal, and trigger execution of that payload as uid 0 through the bashrunner shell subprocess.

The record classifies CVE-2026-76639 under weakness classes [CWE-22](https://cwe.mitre.org/data/definitions/22.html), [CWE-306](https://cwe.mitre.org/data/definitions/306.html). Its CVSS v3 base vector states that the flaw is reachable from an adjacent network, needs no prior authentication, needs no user interaction, and has high impact on confidentiality, integrity, availability. 1 affected-product entry is recorded, across 1 vendor, listed below. The identifier was first published 26 days ago.

## Severity and exploitation probability

- **CVSS v3.1 base score:** 8.8 — HIGH (`CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H`)
- **CVSS v4.0 base score:** 8.7 (`CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N`)
- **EPSS (FIRST):** 0.7% probability of exploitation in the next 30 days, higher than 51.1% of all scored CVEs
- **CISA KEV:** Not listed in the CISA Known Exploited Vulnerabilities catalog
- **Threadlinqs priority:** 8.4/10 — a Threadlinqs composite of the CVSS base score, the EPSS percentile and public exploit availability
- **Published:** 2026-08-27

## Is CVE-2026-76639 being exploited?

Weaponised exploit code for CVE-2026-76639 is publicly available. 2 public proof-of-concept repositories are tracked for this identifier.

- [OlivierLaflamme/UniBLEed](https://github.com/OlivierLaflamme/UniBLEed) (github)
- [trickest/cve](https://github.com/trickest/cve/blob/main/2026/CVE-2026-76639.md) (trickest)

## Affected products and versions

- **Unitree Robotics**: G1 EDU

## How to fix CVE-2026-76639

No vendor patch reference has been recorded for CVE-2026-76639 in the tracked sources. Follow the references below for a fix, and treat the products listed above as exposed until the vendor states otherwise.

## Threat activity tracking CVE-2026-76639

1 tracked threat in the Threadlinqs corpus references CVE-2026-76639, either in the campaign’s CVE list or as an indicator on the campaign record.

- [UniBLEed: Unauthenticated Root RCE Chain Over Bluetooth in Unitree G1 EDU Humanoid Robot (CVE-2026-76639, CVE-2026-76640)](https://intel.threadlinqs.com/threat/TL-2026-2196) — CRITICAL · 2026-08-28

## Sources

Enriched from CVE.org, NVD, FIRST EPSS, GitHub Security Advisories, public proof-of-concept repositories. Last verified by Threadlinqs on 2026-08-31. This product uses the NVD API but is not endorsed or certified by the NVD.

**Exploit and proof of concept**

- [boschko.ca — technical description](https://boschko.ca/g1-ble-rce/)
- [github.com — exploit](https://github.com/OlivierLaflamme/UniBLEed)

**Third-party advisory**

- [vulncheck.com — third party advisory](https://www.vulncheck.com/advisories/unitree-g1-edu-unauthenticated-rce-via-dds-bridge-and-path-traversal)

Canonical: https://intel.threadlinqs.com/cve/CVE-2026-76639
Full detection coverage and IOCs for threats exploiting CVE-2026-76639 via the Threadlinqs MCP server (Purple tier): https://intel.threadlinqs.com/mcp
