RobotRisk Autonomous Systems Incident & Risk Register
RobotRiskUnitree › 27 Aug 2026

Two root RCE flaws (CVE-2026-76639/76640) disclosed in Unitree G1 EDU

S1 · 27 Aug 2026 · Unitree

Record

CompanyUnitree
IndustryHumanoid robots
Type(s)cyber
Date27 Aug 2026 (day precision)
Time of daynot documented
Locationno physical site (recall / fleet-wide / aggregate record)
Severity (near-miss / disclosed vulnerability)
Scalefleet-wide (G1 EDU model)
Confidencehigh
Verified flagCited source on file; not independently re-verified

Summary

A security researcher disclosed two chained remote-code-execution vulnerabilities in the Unitree G1 EDU humanoid -- one network-adjacent via chat_go/bashrunner, one via Bluetooth proximity plus a Wi-Fi provisioning buffer overflow -- together allowing unauthenticated root access to any G1 within Bluetooth range, with no confirmed fixed firmware publicly verified at disclosure.

Primary source

The Hacker News

Publisher: The Hacker News · Retrieved: 2026-09-16

Supporting source rows (1)
DateSupporting source rowPublisherLink
27 Aug 2026 Two root RCE flaws (CVE-2026-76639/76640) disclosed in Unitree G1 EDU The Hacker News The Hacker News

Unitree other incidents timeline

Humanoid robots context

cyber context

Unitree industry position

Related incidents

Other Unitree entries

Report a correction

Open a prefilled GitHub issue

Also from Critical Systems Analysis: CSA - functional safety engineering · Company directory · FSTalent - functional safety jobs