
BREAKING: Critical flaws CVE-2026-7413, CVE-2026-7414 and CVE-2026-7415 in Yarbo robot firmware v2.3.9 expose a hidden backdoor, hardcoded admin creds and open MQTT control for remote takeover. https://threatcluster.io/cluster/critical-vulnerabilities-in-yarbo-robot-firmware-expose-devi-a8214e72
Post summary
The message breaks the news of three critical CVE‑2026‑7413, ‑7414, and ‑7415 vulnerabilities in Yarbo robot firmware that expose a hidden backdoor, hardcoded admin credentials, and open MQTT control, potentially allowing remote takeover.
