VYPR

Device Builder

by Esphome

CVEs (1)

  • CVE-2026-59177higSep 9, 2026
    risk 0.38cvss epss

    ## Summary On the Home Assistant add-on, the dashboard serves a trusted ingress site that skips authentication because the supervisor authenticates the request upstream. That site was binding `0.0.0.0`. The add-on runs in host network mode for mDNS, so binding all interfaces…