| CVE ID | CVSS Score | Severity | Description |
|---|---|---|---|
| CVE-2026-86689 | 5.9 | medium |
The affected product is susceptible to cleartext transmission of sensitive information, which could allow an attacker to connect to the broker and read all data.
|
| CVE-2026-77960 | 5.3 | medium |
The affected product ships with hardcoded FTP credentials which could allow an attacker to connect to the server and read data.
|
| CVE-2026-86520 | 7.5 | high |
The affected product is shipped with hardcoded MQTT credentials, which will grant read access to real-time data for every active device across a subset of carriers that were connected to the affected MQTT broker.
|