Home
LOW: 3.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:NDefault status
unknown
Any version
affected
Description
The YoSmart YoLink application through 2025-10-02 has session tokens with unexpectedly long lifetimes.
Problem types
CWE-863 Incorrect Authorization
Product status
Any version
References
shop.yosmart.com/pages/product-support
bishopfox.com/...20-smart-device-gave-me-access-to-your-home
shop.yosmart.com/pages/sa-2025-001