|
321
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The Aqara IAM/SSO Gateway (gw-builder.aqara.com) provides an open redirect, which is an instance of "CWE-601: URL Redirection to Untrusted Site," with an estimated CVSS of CVSS:3.1/AV:N/AC:L/PR:N/UI:…
New
|
CWE-601
Open Redirect
|
CVE-2026-50089
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
322
|
8.2 |
HIGH
Network
|
-
|
-
|
The Aqara Developer Portal (developer.aqara.com) and shared test environments (developer-test.aqara.com, aiot-test.aqara.com) exhibit cross-origin request sharing, which is an instance of "CWE-942: P…
New
|
CWE-942
Permissive Cross-domain Policy with Untrusted Domains
|
CVE-2026-50088
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
323
|
8.2 |
HIGH
Network
|
-
|
-
|
The Aqara IAM/SSO gateway (gw-builder.aqara.com) exhibits a cross-origin request sharing vulnerability, which is an instance of "CWE-942: Permissive Cross-domain Policy with Untrusted Domains," and h…
New
|
CWE-942
Permissive Cross-domain Policy with Untrusted Domains
|
CVE-2026-50087
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
324
|
10.0 |
CRITICAL
Network
|
-
|
-
|
The Aqara IAM/SSO gateway (gw-builder.aqara.com) exposes bidirectional AES round-trups against the platform's signing key without authentication. This is an instance of "CWE-306: Missing Authenticati…
New
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2026-50086
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
325
|
8.6 |
HIGH
Network
|
-
|
-
|
The Aqara Board service (op-test.aqara.com) accepts arbitrary MQTT command payloads, and forwards them to the platfom's HiveMQ broker without authentication. This is an instance of "CWE-306: Missing …
New
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-50085
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
326
|
9.6 |
CRITICAL
Network
|
-
|
-
|
The Aqara Cloud Production API (open-cn.aqara.com/v3.0/open/api) would authorize any valid developer token for access to any account. This is an instance of "CWE-862: Missing Authorization" with an e…
New
|
CWE-862
Missing Authorization
|
CVE-2026-50084
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
327
|
9.1 |
CRITICAL
Network
|
-
|
-
|
The Aqara IAM/SSO Gateway (gw-builder.aqara.com) used a hardcoded OAuth client credential, which is an instance of "CWE-798: Use of Hard-coded Credentials." This issue has an estimated CVSS of CVSS:3…
New
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2026-50083
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
328
|
6.5 |
MEDIUM
Network
|
-
|
-
|
The Aqara Cloud Developer Portal (developer.aqara.com) issued a developer token to any email address supplied by the attacker. This is an instance of "CWE-306: Missing Authentication for Critical Fun…
New
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-50082
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
329
|
5.3 |
MEDIUM
Network
|
-
|
-
|
Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, before reading the first request-line, `HttpObjectDecoder` …
New
|
CWE-444
HTTP Request Smuggling
|
CVE-2026-50020
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
330
|
4.3 |
MEDIUM
Network
|
-
|
-
|
NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 3.0.1000.0 to before version 6.0.1698.0, a heap buffer-overflow read exists in the LVM2 physical-volume metada…
New
|
CWE-125
Out-of-bounds Read
|
CVE-2026-47224
|
2026-06-13 02:16 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|