Search Results (1 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-45323 1 Jpettitt 1 Meshcore-card 2026-05-29 9.6 Critical
MeshCore Card provides MeshCore Lovelace card for Home Assistant. Prior to 0.3.3, Meshcore node names are rendered without HTML escaping in meshcore-card, allowing any node within direct or indirect (repeated) radio range to execute arbitrary javascript in the Home Assistant frontend of anyone viewing the card. This vulnerability is fixed in 0.3.3.