As cited
Copy frozen at (site build).
vulnerabilities
igloohome Smart Lock Mobile Application
The igloohome Smart Lock Mobile Application for Android versions 3.2.3 and prior contains a vulnerability (CVE-2026-16581) that embeds sensitive information in source code, potentially allowing unauthorized actors to access backend functions and services. The vendor has patched the issue by strengthening authentication controls on backend services, with a CVSS score of 5.3 (medium severity).
Why it matters: Smart lock users and facility managers should update their igloohome Android application immediately, as the vulnerability could allow attackers to bypass authentication and access door lock functions or related backend systems without proper credentials.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
igloohome Smart Lock Mobile Application
The igloohome Smart Lock Mobile Application for Android versions 3.2.3 and prior contains a vulnerability (CVE-2026-16581) that embeds sensitive information in source code, potentially allowing unauthorized actors to access backend functions and services. The vendor has patched the issue by strengthening authentication controls on backend services, with a CVSS score of 5.3 (medium severity).
Why it matters: Smart lock users and facility managers should update their igloohome Android application immediately, as the vulnerability could allow attackers to bypass authentication and access door lock functions or related backend systems without proper credentials.
- Source published
- First seen by Cybersecurity Tracker