VYPR

UniGetUI

by Devolutions

CVEs (1)

  • CVE-2026-10696Jun 17, 2026
    risk 0.00cvss epss

    Use of an incorrectly resolved name or reference in the pinget backend in Devolutions UniGetUI 2026.2.0 and earlier allows a WinGet community catalog contributor to cause an installed application to be correlated to an unrelated, attacker-controlled catalog package and to…