๐Ÿ” CVE Alert

CVE-2026-8374

UNKNOWN 0.0

Misuse and Misconfiguration of Cryptographic Algorithm in Bluetooth Communication

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Misuse and misconfiguration in Bluetooth communication in SwitchBot Door Lock Series allows an attacker to bypass the electronic lock and access controls via a manipulated communication protocol.

CWE CWE-1204 CWE-1240
Vendor switchbot
Product lock series lock
Published Oct 9, 2026
Stay Ahead of the Next One

Get instant alerts for switchbot lock series lock

Be the first to know when new unknown vulnerabilities affecting switchbot lock series lock are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

SwitchBot / Lock Series Lock
0 โ‰ค 3.4
SwitchBot / Lock Series Keypad
0 โ‰ค 2.7
SwitchBot / Lock Series App
0 โ‰ค 9.2.6

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
neodyme.io: https://neodyme.io/en/advisories/cve-2026-8374/ neodyme.io: https://neodyme.io/en/blog/switchbot/

Credits

Aaron Kaiser (Neodyme AG) Tobias Madl (Neodyme AG) Justin Mietzner (Neodyme AG)