Skip to content

Known CVE

ESPHome - Authentication Bypass

ESPHome 2025.8.0 contains an authentication bypass caused by improper validation of base64-encoded Authorization values in the web_server component, letting attackers access functionality without valid credentials, exploit requires crafted Authorization header.

CVE-2025-57808

High2025

cve2025 · auth-bypass · esphome · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website