What is CVE-2026-53453?
CVE-2026-53453 is an authorization flaw in the Blueprint Studio add-on for Home Assistant. The backend fails to consistently enforce admin-only restrictions, exposing privileged API actions to any authenticated user. Upgrading to version 2.5.2 addresses the issue.
Azərbaycanca: CVE-2026-53453 Blueprint Studio əlavəsində avtorizasiya boşluğudur. Backend admin üçün nəzərdə tutulan API əməliyyatlarını istənilən autentifikasiyalı Home Assistant istifadəçisinə ifşa edir. Versiya 2.5.2-yə yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
What product is affected by CVE-2026-53453?
It affects the Blueprint Studio add-on for Home Assistant.
Is authentication required to exploit CVE-2026-53453?
Yes, the vulnerability can be exploited by any authenticated Home Assistant user.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.