What is CVE-2026-21084?
An improper access control vulnerability exists in SmartThings prior to version 1.8.47.24, allowing local attackers to access sensitive information. Users are advised to update to version 1.8.47.24 or later immediately.
Azərbaycanca: SmartThings platformasının 1.8.47.24 versiyasından əvvəlki versiyalarında düzgün olmayan giriş nəzarəti (improper access control) zəifliyi aşkar edilib. Bu, lokal təcavüzkarlara həssas məlumatlara icazəsiz giriş imkanı verir. İstifadəçilərə dərhal 1.8.47.24 və ya daha yeni versiyaya yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-284
FAQ2
Which platform is affected by CVE-2026-21084?
This vulnerability affects SmartThings platform versions prior to 1.8.47.24.
What should users do to mitigate CVE-2026-21084?
Users are advised to immediately update the SmartThings platform to version 1.8.47.24 or later.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.