CVE-2025-15509: Vivo Smartremote Module

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

The SmartRemote module has insufficient restrictions on loading URLs, which may lead to some information leakage.

Affected products

  • Vivo Smartremote Module: before 5.1.2.0 (fixed in 5.1.2.0)

Published 2026-02-27. Last modified 2026-06-17.