VYPR

tts

by Freepbx

Source repositories

CVEs (2)

  • CVE-2026-73660HigAug 13, 2026
    risk 0.42cvss —epss 0.00

    FreePBX is an open source IP PBX. Prior to 16.0.6 and 17.0.5.4, the FreePBX Text-To-Speech module allows an authenticated administrator to save a TTS destination name that is HTML-encoded for storage, decoded during dialplan generation, passed as an AGI argument, and used to…

  • CVE-2025-67736HigDec 16, 2025
    risk 0.40cvss 7.2epss 0.06

    The FreePBX module tts (Text to Speech) for FreePBX, an open-source web-based graphical user interface (GUI) that manages Asterisk. Versions prior to 16.0.5 and 17.0.5 are vulnerable to SQL injection by authenticated users with administrator access. Authenticated users with…