MEDIUM
Signify
CVE published 2026-08-13
CVE-2026-73669
The Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT broker service that listens on all network interfaces without authentication. This vulnerability allows an unauthenticated attacker with network access to the MQTT service on a vulnerable system to read data and control connected lights. The issue was fixed in firmware version 1.77.2071318010. Organizations should verify and apply the provided fi [truncated]