VYPR

Docs

by Sismics

Source repositories

CVEs (2)

  • CVE-2026-50885HigJun 15, 2026
    risk 0.49cvss 7.5epss 0.00

    Incorrect access control in the share-based read endpoints of Sismics Docs (Teedy) v1.11 allow unauthorized attackers to access sensitive endpoints via a crafted request.

  • CVE-2022-22115CriJan 10, 2022
    risk 0.00cvss 9.0epss 0.01

    In Teedy, versions v1.5 through v1.9 are vulnerable to Stored Cross-Site Scripting (XSS) in the name of a created Tag. Since the Tag name is not being sanitized properly in the edit tag page, a low privileged attacker can store malicious scripts in the name of the Tag. In the…