Home Assistant before 0.67.0 was vulnerable to an information disclosure that allowed an unauthenticated attacker to read the application's error log via components/api.py.
"https://github.com/pypa/advisory-database/blob/main/vulns/homeassistant/PYSEC-2019-221.yaml"