CVE-2026-32684: Hikvision Hik-Connect App

Low severity, CVSS 2.9. EPSS: 0.1% chance of exploitation in the next 30 days.

The application does not impose strict enough restrictions on directory access permissions, posing a risk that other malicious applications could obtain sensitive information.

Affected products

  • Hikvision Hik-Connect App: from 6.10, before 6.11 (fixed in 6.11)

Published 2026-05-12. Last modified 2026-06-17.