B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-50086 - Aqara unauthenticated AES oracle

CVE ID :CVE-2026-50086 Published : June 12, 2026, 4:16 p.m. | 51 minutes ago Description :The Aqara IAM/SSO gateway (gw-builder.aqara.com) exposes bidirectional AES round-trups against the platform's signing key without authentication. This is an instance of "CWE-306: Missing Authentication...

Original-Artikel öffnen Zurück zur Übersicht