Refresh: Blue Iris build status, UniFi Protect third-party camera support, and new EZVIZ CVE
2026-07-22
This cycle we refreshed Blue Iris, Frigate, Scrypted, UniFi Protect, and EZVIZ. Here's what changed:
**Blue Iris**: Build 5.9.9.99 is current (not yet v6.0.0.00, pending documentation work). LE licence confirmed at $34.95 (auto-renewal) or $39.95 (one-time).
**Frigate**: v0.17.2 confirmed stable (released June 2024). No major architectural changes since our baseline.
**Scrypted**: Face and licence-plate recognition are now confirmed as documented core features (not just community workarounds), with support for OpenVINO, CUDA, and CoreML backends for ML acceleration.
**UniFi Protect**: Updated to v7.1.60 with new features — alarm response integration, expanded third-party camera support (audio, motion detection, config change detection), dewarped video export, and vehicle auto-tracking for AI PTZ cameras. Encryption at rest remains undocumented (our `null` status unchanged).
**EZVIZ**: New vulnerability disclosed — CVE-2026-32683 (cloud feature module, CVSS 5.3) allows attackers to eavesdrop on API requests to obtain data. Remediation: upgrade the EZVIZ app and enable video encryption. This joins the 2022 CVE-2022-2472 (key recovery flaw in supposedly encrypted footage) in EZVIZ's documented CVE history.
All refreshed sources have been dated 2026-07-22. No changes to Noviscan's claims on encryption at rest or remote access (still accurate — UniFi Protect remains unconfirmed for at-rest encryption, reinforcing Noviscan's stated difference).