VYPR

Govee Home

by Govee

CVEs (1)

  • CVE-2023-3612Sep 11, 2023
    risk 0.00cvss epss 0.00

    Govee Home app has unprotected access to WebView component which can be opened by any app on the device. By sending an URL to a specially crafted site, the attacker can execute JavaScript in context of WebView or steal sensitive user data by displaying phishing content.