CVE-2020-36517: Home-Assistant
High severity, CVSS 7.5. EPSS: 2.9% chance of exploitation in the next 30 days.
An information leak in Nabu Casa Home Assistant Operating System and Home Assistant Supervised 2022.03 allows a DNS operator to gain knowledge about internal network resources via the hardcoded DNS resolver configuration.
Affected products
- Home-Assistant Home-Assistant: version 2022.03 only
Published 2022-03-10. Last modified 2026-06-17.