CISA 2026-08-06 Johnson Controls Inc. TL280 CVE-2026-27871 From Cybersecurity and Infrastructure Security Agency ↗ Successful exploitation of this vulnerability could allow an attacker to access sensitive information on the device. The following versions of Johnson Controls Inc. TL280 are affected: TL280 Read the full advisory on CISA →