OFFLINE
Awaiting data
Security intelligence
MajorCritical vulnerability

CVE-2026-94204 (CVSS 8.7)

NVD · officialPublished Sep 29, 2026Risk 37/100

The central cloud storage backend for the entire dashcam platform is misconfigured with public-read permissions, allowing unrestricted access to all stored objects. Because this bucket serves as shared storage for the platform, sensitive user records, live dashcam footage, application packages, and firmware files are exposed to anyone on the internet.

CVSS
8.7
AV:NetworkAC:LowPR:NoneUI:None

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source