YoSmart YoLink Ecosystem Unencrypted MQTT Communication Vulnerability

Vulnerability

A vulnerability exists in the YoSmart YoLink ecosystem, including the YoLink Hub 0382, YoLink Mobile Application 1.40.41, and YoLink MQTT Broker, due to the use of unencrypted MQTT for internet communication. This flaw allows attackers to monitor network traffic and intercept sensitive information, such as Wi-Fi credentials and device IDs, or manipulate the traffic to control connected devices. The issue arises from the hub's MQTT traffic being transmitted in cleartext, without the security of encryption, leaving it exposed to interception and exploitation.

Impact

Exploitation of this vulnerability could lead to unauthorized access and control over YoLink devices connected to the compromised hub. This includes potential physical access to homes by manipulating smart locks or garage doors, as well as the ability to disrupt or interfere with other connected devices.

Reproduction

The vulnerability can be reproduced by intercepting the unencrypted MQTT traffic between the YoLink Hub and the YoLink MQTT Broker. This can be done by monitoring the network with a packet capture tool, such as Wireshark, while the YoLink application is used to control connected devices. The intercepted MQTT messages will reveal sensitive information and commands being sent to and from the devices.

Remediation

Users are advised to treat the YoLink Hub as an untrusted device. It is recommended to disconnect or segment the hub from critical networks, avoid using it for access control, and consider switching to vendors that provide regular security updates and independent security testing.

Added: Oct 6, 2025, 8:21 PM
Updated: Oct 6, 2025, 8:21 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.6
remediation
0.0
relevance
0.6
threat
6.4
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.