VYPR

Payara Server Full

by Payara Platform

CVEs (1)

  • CVE-2026-12986Jun 24, 2026
    risk 0.00cvss epss

    A critical vulnerability in Admin GUI in Payara Server Full 4.x, 5.x, 6.x, 7.x, 7.2026.x, 6.2025.x, 6.2024.x on All platforms that allows the attacker to leak the admin gfresttoken to an attacker-controlled host that can result in a full unauthenticated takeover of Payara admin…