CVE-2018-21019: Home-Assistant
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
Home Assistant before 0.67.0 was vulnerable to an information disclosure that allowed an unauthenticated attacker to read the application's error log via components/api.py.
Affected products
- Home-Assistant Home-Assistant: before 0.67.0 (fixed in 0.67.0)
Published 2019-09-23. Last modified 2026-06-17.