VYPR

Perspective

by Perspective

CVEs (5)

  • CVE-2026-67200Aug 4, 2026
    risk 0.00cvss epss

    Perspective 5.0.0 contains a path traversal vulnerability that allows unauthenticated remote attackers to read arbitrary files from the server filesystem by including literal ../ segments in HTTP request URL paths. Attackers can bypass the insufficient query-string-stripping…

  • CVE-2026-67199Aug 4, 2026
    risk 0.00cvss epss

    Perspective 5.0.0 contains a denial of service vulnerability that allows remote attackers to block the server event loop indefinitely by submitting a crafted expression containing unbounded for or while loop constructs in a TableMakeViewReq message. Attackers can embed an…

  • CVE-2026-67198Aug 4, 2026
    risk 0.00cvss epss

    Perspective 5.0.0 contains a denial-of-service vulnerability in the VirtualServer protocol dispatcher that allows unauthenticated remote attackers to crash the server process by sending malformed or incomplete protobuf messages. Attackers can send well-formed requests such as…

  • CVE-2026-67196Aug 4, 2026
    risk 0.00cvss epss

    Perspective 5.0.0 contains a cross-site scripting vulnerability in the built-in Debug plugin that allows attackers to inject arbitrary HTML and JavaScript by writing table cell values containing unescaped HTML markup, which are interpolated directly into innerHTML during CSV…

  • CVE-2026-67195Aug 4, 2026
    risk 0.00cvss epss

    Perspective 5.0.0 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary operating system commands by submitting crafted expression strings to the PolarsVirtualServer backend, which passes client-supplied input directly to…