CVE-2026-66410: Low severity vulnerability
Published Aug 10, 2026
·Updated
Android and iOS apps ECOVACS PRO App improperly validate server certificates. Communication may be retrieved and/or altered.
Event History
Aug 10, 2026
CVE Published
via MITRE·08:08 AM
Data Sourced
via MITRE·08:08 AM
DescriptionSeverity
Data Sourced
via NVD·09:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-66410?
CVE-2026-66410 has a medium severity rating of 4.8.
2
What does CVE-2026-66410 describe?
CVE-2026-66410 describes improper validation of server certificates in the ECOVACS PRO App for Android and iOS.
3
How does CVE-2026-66410 affect users?
CVE-2026-66410 may allow an attacker to retrieve and/or alter communications between the user and the server.
4
What platforms are affected by CVE-2026-66410?
CVE-2026-66410 affects both Android and iOS platforms using the ECOVACS PRO App.
5
How can I mitigate the risks associated with CVE-2026-66410?
To mitigate CVE-2026-66410, ensure that you update the ECOVACS PRO App to the latest version that addresses the server certificate validation.