What is CVE-2026-66403?
This vulnerability arises because the debugging web server remains enabled on DEEBOT PRO M1 and DEEBOT PRO K1VAC robot vacuums. As a result, the floor map and log information stored on the affected devices may be retrieved. It is recommended to apply the security update released by the manufacturer.
Azərbaycanca: Bu zəiflik DEEBOT PRO M1 və DEEBOT PRO K1VAC robot tozsoranlarında debug məqsədli veb serverin aktiv qalması ilə bağlıdır. Bu səbəbdən cihazda saxlanılan mərtəbə xəritəsi və log məlumatları əldə oluna bilər. İstehsalçı tərəfindən buraxılmış təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
FAQ2
What kind of data can be extracted from the DEEBOT devices in CVE-2026-66403?
The floor map and log information stored on the device can be retrieved.
How can I protect against CVE-2026-66403?
Apply the security update released by the manufacturer.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.