Home Assistant prior to 0.67.0 was vulnerable to an information disclosure that allowed an unauthenticated malicious user to read the application's error log via components/api.py.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
home-assistant home-assistant |