Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Aaron Hasty

Researcher fromOstrich Lab
#28435of 56,330
9.4Total CVSS
Vulnerabilities · 1
PT-2026-4286
9.4
2026-01-22
Hubitat · Hubitat Elevation · CVE-2026-1201
**Name of the Vulnerable Software and Affected Versions** Hubitat Elevation versions prior to 2.4.2.157 **Description** A flaw exists in Hubitat Elevation home automation controllers that allows a remote authenticated user to control connected devices outside of their authorized scope. This is possible through manipulation of client-side requests. The issue involves an authorization bypass through user-controlled key manipulation. **Recommendations** Update to version 2.4.2.157 or later.