Medium severity5.8NVD Advisory· Published Oct 6, 2025· Updated Apr 15, 2026
CVE-2025-59452
CVE-2025-59452
Description
The YoSmart YoLink API through 2025-10-02 uses an endpoint URL that is derived from a device's MAC address along with an MD5 hash of non-secret information, such as a key that begins with cf50.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.