CVE-2026-59178 | esphome device-builder up to 1.0.11 Dashboard improper authentication

SecurityVulns

A vulnerability labeled as critical has been found in esphome device-builder up to 1.0.11. Impacted is an unknown function of the component Dashboard. Executing a manipulation of the argument ESPHOME_USERNAME/ESPHOME_PASSWORD/USERNAME/PASSWORD can lead to improper authentication.

This vulnerability is tracked as CVE-2026-59178. The attack can be launched remotely. No exploit exists.

The affected component should be upgraded.VulDB Recent EntriesRead More