Exploit for CVE-2026-26478

A shell command injection vulnerability in Mobvoi Tichome Mini smart speaker 012-18853 and 027-58389 allows remote attackers to send a specially crafted UDP datagram and execute arbitrary shell code as the root account.

Published: 2026-03-04

CVSS: 9.8

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Download Exploit for CVE-2026-26478 here:

Use Tor Browser to access .onion site.

https://sonitex.com/exploit-398-cve-2025-52998/

https://sonitex.com/exploit-225-cve-2026-27822/

https://sonitex.com/exploit-393-cve-2026-26695/

https://sonitex.com/exploit-177-cve-2026-2778/

https://sonitex.com/exploit-363-cve-2026-3398/