CVE-2024-28756: Solaredge Mysolaredge

Medium severity, CVSS 5.9. EPSS: 0.2% chance of exploitation in the next 30 days.

The SolarEdge mySolarEdge application before 2.20.1 for Android has a certificate verification issue that allows a Machine-in-the-middle (MitM) attacker to read and alter all network traffic between the application and the server.

Affected products

  • Solaredge Mysolaredge: before 2.20.1 (fixed in 2.20.1)

Published 2024-03-21. Last modified 2026-06-17.