Loading the catalog…
Loading the catalog…
critical severity · CWE-80 · pip homeassistant · affected < 2026.7.0 · fixed in 2026.7.0
What RADAR observed and classified to build this opportunity. It is what the source published, not a verification that the offer is still active.
CVE-2026-91130: Home Assistant: XSS in Statistics Graph Card — homeassistant, fixed in 2026.7.0
Open sourceThe catalog shows persisted RADAR opportunities. Storage availability does not mean sources are verified or offers are active.