VYPR

Nx Witness VMS

by Network Optix

CVEs (1)

  • CVE-2026-10056HigMay 29, 2026
    risk 0.49cvss 7.5epss

    CORS misconfiguration in the REST API of Network Optix Nx Witness VMS before version 6.1.2, when running in the default Standard security mode, on Linux and Windows allows an unauthenticated remote attacker to steal the session token of an authenticated user and perform…