CVE-2023-48419: Google Home Firmware

Critical severity, CVSS 9.8. EPSS: 0.2% chance of exploitation in the next 30 days.

An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in Elevation of Privilege 

Affected products

  • Google Home Firmware: before 2.58 (fixed in 2.58)
  • Google Home Mini Firmware: before 2.58 (fixed in 2.58)
  • Google Nest Audio Firmware: before 2.58 (fixed in 2.58)
  • Google Nest Mini Firmware: before 2.58 (fixed in 2.58)

Published 2024-01-02. Last modified 2026-06-17.