TP-Link Tapo P125M and Kasa KP125M v1.0.3 was discovered to improperly validate certificates, allowing attackers to eavesdrop on communications and access sensitive information via a man-in-the-middle attack.
https://github.com/Chapoly1305/tp-link-cve/blob/main/CVE-2024-46548.md