← Back to feed
Vulnerabilities & PatchesEmerging1 sourceSep 24, 2026 · 12:00via CISA Alerts

Eufy Omni C20, Omni X10 Pro

Brief

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to run system level commands or execute arbitrary code. The following versions of Eufy Omni C20, Omni X10 Pro are affected: Omni C20 1.

  • 4 (CVE-2026-93289, CVE-2026-93290, CVE-2026-93291) Omni X10 Pro 1.
  • 4 (CVE-2026-93289) CVSS Vendor Equipment Vulnerabilities

v3 9.4 Eufy Eufy Omni C20, Omni X10 Pro Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Use of Hard-coded Credentials, Improper Certificate Validation

Background

Critical Infrastructure Sectors: Information Technology

Countries/Areas Deployed: Worldwide

Company Headquarters Location: China

Read more on CISA Alerts→