Vulnerabilities > Google > Nest Mini Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-08-19 CVE-2024-32928 The libcurl CURLOPT_SSL_VERIFYPEER option was disabled on a subset of requests made by Nest production devices which enabled a potential man-in-the-middle attack on requests to Google cloud services by any host the traffic was routed through.
network
high complexity
google haxx
5.9
2024-01-02 CVE-2023-48419 Unspecified vulnerability in Google products
An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in Elevation of Privilege 
network
low complexity
google
critical
9.8