CVE-2026-66406 UNKNOWN

CVE-2026-66406

Published: 2026-08-10

Description

DEEBOT PRO M1 and DEEBOT PRO K1VAC use wget command with server certificate validation disabled. A man-in-the-middle attack may allow to obtain and/or alter communications of the affected products. As a result, arbitrary code may be executed with the administrative privilege.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…