A critical zero-day vulnerability (CVE-2024-40891) in Zyxel CPE devices is being actively exploited, allowing attackers to execute arbitrary commands and compromise systems. Users are advised to filter unusual HTTP traffic and restrict administrative access while awaiting an official patch.