All 6 CVE vulnerabilities found in blueprint-studio, with AI-generated Chinese analysis, references, and POCs.
Vendor: ha-china
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-53457 | Blueprint Studio terminal command working directory not bounded to config directory CWE-22 | 5.1 | Medium | 2026-08-18 |
| CVE-2026-53456 | Blueprint Studio terminal SSH private key written to disk CWE-522 | 5.6 | Medium | 2026-08-18 |
| CVE-2026-53455 | Blueprint Studio Git credential helper command injection CWE-78 | 8.6 | High | 2026-08-18 |
| CVE-2026-53454 | Blueprint Studio stored Git credentials in plaintext Git credential store CWE-522 | 6.9 | Medium | 2026-08-18 |
| CVE-2026-53453 | Blueprint Studio API authorization bypass for non-admin Home Assistant users CWE-862 | 8.7 | High | 2026-08-18 |
| CVE-2026-53458 | Blueprint Studio API exposed internal exception details CWE-209 | 5.3 | Medium | 2026-08-18 |
All 6 known CVE vulnerabilities affecting blueprint-studio with full Chinese analysis, references, and POCs where available.