Vulnerabilities > Openhab

DATE CVE VULNERABILITY TITLE RISK
2021-02-01 CVE-2021-21266 XXE vulnerability in Openhab
openHAB is a vendor and technology agnostic open source automation software for your home.
network
low complexity
openhab CWE-611
4.0
2020-02-20 CVE-2020-5242 Incorrect Authorization vulnerability in Openhab
openHAB before 2.5.2 allow a remote attacker to use REST calls to install the EXEC binding or EXEC transformation service and execute arbitrary commands on the system with the privileges of the user running openHAB.
network
openhab CWE-863
critical
9.3