CISA Advisory: Rently Smart Home Vulnerability Allows Credential Access
CISA released an advisory on August 25, 2026, regarding a vulnerability in Rently Smart Home versions 20.1.0 and prior. The vulnerability, identified as CVE-2026-75960, is an Insufficiently Protected Credentials issue (CWE-522) that could allow an attacker to access sensitive information and override user permissions by retrieving pins, including the Master Pin. The CVSS base score is 8.1 (High) under version 3.1 and 8.7 (High) under version 4.0. Rently has patched the vulnerability in late June, and no user action is required. CISA recommends defensive measures such as minimizing network exposure and using VPNs for remote access. No known public exploitation has been reported to CISA at this time.
What we know
Successful exploitation could allow an attacker to retrieve pins, including the Master Pin, and override user permissions.
▤ 1 sources›
CVSS v3.1 base score is 8.1 (High); CVSS v4.0 base score is 8.7 (High).
▤ 1 sources›
Rently has patched the vulnerability in late June; no user action is required.
▤ 1 sources›
No known public exploitation has been reported to CISA at this time.
▤ 1 sources›
The vulnerability is an Insufficiently Protected Credentials issue (CWE-522).
▤ 1 sources›
Rently Smart Home versions 20.1.0 and prior are affected.
▤ 1 sources›
CISA published an advisory on 2026-08-25 for CVE-2026-75960.
▤ 1 sources›
CISA published an advisory for a high-severity vulnerability (CVE-2026-75960) in Rently Smart Home versions 20.1.0 and prior. The flaw could allow an attacker to retrieve pins, including the Master Pin, and override user permissions. Rently has patched the issue; no user action is required.
Verified · 1 sourcesLive reports
View allComments 0
Discuss this event in persistent threads. Live chat remains separate.
No comments yet. Start the conversation.