CVE-2020-14130: Mi Xiaomi

Medium severity, CVSS 5.3. EPSS: 0.7% chance of exploitation in the next 30 days.

Some js interfaces in the Xiaomi community were exposed, causing sensitive functions to be maliciously called on Xiaomi community app Affected Version <3.0.210809

Affected products

  • Mi Xiaomi: before 3.0.210809 (fixed in 3.0.210809)

Published 2021-09-16. Last modified 2026-06-17.