Report a potential vulnerability or security issue
1. Support Period for Connected Products
The Connected Product will have a minimum support period of 5 (five) years from its first commercial launch.
Mobile apps developed by De’Longhi will be made available on the latest publicly released iOS and Android Operating System version and will have a minimum support period of 3 (three) years from the first release of the mobile operating system by Apple and Google.
The first commercial launch for each connected product is reported in the tables below:
Comfort Appliances
| Model | First commercial launch | End support date |
|---|---|---|
| PAC EL112 CST WIFI | Oct, 1st - 2023 | Sept, 1st - 2028 |
| PAC EX130 CST WIFI | Oct, 1st - 2022 | Sept, 1st - 2027 |
| PAC EL110 WIFI | Oct, 1st - 2022 | Sept, 1st - 2028 |
| DDSX220WF-WH | Mar, 1st - 2020 | Mar, 1st - 2025 |
| DDSX225W-WH | Feb, 1st - 2024 | Feb, 1st - 2029 |
| TRD5xxxxWIFI | Mar, 1st - 2026 | March, 1st - 2031 |
Fully Automatic Coffee Machines
| Model | First commercial launch | End support date |
|---|---|---|
| ECAM610.75.MB | Jan, 1st - 2023 | Jan, 1st - 2028 |
| ECAM630.75.TM | Jul, 1st - 2025 | Jul, 1st - 2030 |
| ECAM450.86.T EX:4 | Jun, 1st - 2025 | Jun, 1st - 2030 |
| ECAM470.85.MB | Jul, 1st - 2026 | Jul, 1st - 2031 |
Nespresso Coffee Machines
| Model | First commercial launch | End support date |
|---|---|---|
| ENV120 | Dec - 2022 | Nov - 2027 |
| ENV300 | Jun - 2023 | May - 2028 |
| ENV90 | Mar - 2023 | Feb - 2028 |
| ENV95 | Jan - 2026 | Dec - 2031 |
| ENV200 | Mar - 2026 | Feb - 2031 |
2. Report a potential vulnerability or security issue
De’Longhi encourages its consumers to report security issues.
If you believe you have spotted a potential vulnerability or security issue in one of our connectable products, please click on this link and select the Cyber security issue from the message category menu.
Important information: De’Longhi commits itself to acknowledge receipt of the vulnerability report, as well as to provide an estimated period for conducting the proper verifications and to notify the completion of the vulnerability fixing.
Our standard response time to acknowledge receipt of vulnerability reports is 5 working days.
Status updates of reported vulnerabilities will be disclosed when relevant information becomes available and investigations are completed.
Please be informed the form is to report security vulnerabilities or issues only. Any reporting or complaint not falling within this scope will not be taken into consideration. Please contact us through alternative channels.
3. Vulnerabilities Bulletin
| Vulnerability ID | Affected products | Title | Publication Date | Last Update |
|---|