CVE-2020-14114: Mi Smarthome

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

information leakage vulnerability exists in the Xiaomi SmartHome APP. This vulnerability is caused by illegal calls of some sensitive JS interfaces, which can be exploited by attackers to leak sensitive information.

Affected products

  • Mi Smarthome: up to and including 6.4.701

Published 2022-07-22. Last modified 2026-06-17.