No advisories yet.
Solution
igloohome has enhanced the access control mechanisms on backend services to ensure that only properly authenticated and authorized requests can interact with sensitive functionality. No user interaction is needed. For more information, contact igloohome (info@igloohome.com).
Workaround
No workaround given by the vendor.
Wed, 29 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Igloohome
Igloohome smart Lock Mobile Application |
|
| Vendors & Products |
Igloohome
Igloohome smart Lock Mobile Application |
|
| Metrics |
ssvc
|
Tue, 28 Jul 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In igloohome Smart Lock Mobile App versions 3.2.3 and prior, an Inclusion of Sensitive Information in Source Code vulnerability could allow an unauthorized actor to access functions or backend services that were not sufficiently protected by authentication controls. | |
| Title | Inclusion of sensitive information in source code in igloohome Smart Lock Mobile Application | |
| Weaknesses | CWE-540 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-07-29T13:59:18.399Z
Reserved: 2026-07-22T13:40:37.456Z
Link: CVE-2026-16581
Updated: 2026-07-29T13:58:45.559Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-29T15:10:36Z