Browse all 7 CVE security advisories affecting Meari. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-96613 | Missing Authorization in Meari IoT Cloud Platform OpenAPI Service — IoT Cloud Platform OpenAPI Service CWE-862 | 6.5 | Medium | 2026-10-02 |
| CVE-2026-101104 | Missing Authorization in Meari IoT Cloud Platform OpenAPI Service — IoT Cloud Platform OpenAPI Service CWE-862 | 7.7 | High | 2026-10-02 |
| CVE-2026-33362 | Meari SDK hardcoded cryptographic keys — com.meari.sdk CWE-321 | 8.6 | High | 2026-05-11 |
| CVE-2026-33361 | Meari weak XOR obfuscation — com.meari.sdk CWE-326 | 7.5 | High | 2026-05-11 |
| CVE-2026-33359 | Meari unauthenticated alert image access in cloud object storage — Alibaba OSS Hosted CWE-862 | 7.5 | High | 2026-05-11 |
| CVE-2026-33357 | Meari OpenAPI device status IDOR — com.meari.sdk CWE-862 | 7.5 | High | 2026-05-11 |
| CVE-2026-33356 | Meari MQTT broker missing per-device subscribe ACL — IoT Cloud MQTT Broker EMQX CWE-639 | 7.7 | High | 2026-05-11 |
This page lists every published CVE security advisory associated with Meari. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.