VYPR

Input

by Deck9

CVEs (2)

  • CVE-2026-50876Jun 15, 2026
    risk 0.00cvss epss

    A cross-site scripting (XSS) vulnerability in Deck9 Input v2.0.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

  • CVE-2026-50875Jun 15, 2026
    risk 0.00cvss epss

    Incorrect access control in the /{form}/webhooks/{webhook} endpoint of Deck9 Input v2.0.1 allows authenticated attackers to arbitrarily modify or delete another tenant's webhook via a crafted request.