Security Advisory

CVE-2026-33268

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-03-25 14:21:30
Last updated 2026-03-25 15:53:45
Assigner cisa-cg
State PUBLISHED

Description

Nanoleaf Lines 12.3.2 does not authenticate firmware file uploads. A remote, unauthenticated attacker can upload firmware files on the device and consume storage resources. Fixed in 12.3.6.