← Back to CVE search

CVE-2026-66404

Description

DEEBOT PRO M1 and DEEBOT PRO K1VAC do not validate server certificates in MQTT communications. Operation logs and activity logs stored on the affected products may be retrieved.

CVSS 6.5EPSS 0.203%Risk 0.66
View source
Published
2026-08-10 09:17:22
Last modified
2026-08-10 18:18:49
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N