CVE-2026-77974: Softish c6 Ear Camera

High severity, CVSS 8.0. EPSS: 0.3% chance of exploitation in the next 30 days.

After spoofing the device and obtaining one user confirmation, an attacker may be able to cause the application to transmit firmware through an unauthenticated and unsigned update channel.

Affected products

  • Softish c6 Ear Camera: version 1.3.1_Code 132 only
  • Softish Earvision Android Application: version 1.3.1 only

Published 2026-09-09. Last modified 2026-09-10.