VYPR

Hub

by Hubert

CVEs (2)

  • CVE-2025-65783CriJan 13, 2026
    risk 0.64cvss 9.8epss 0.00

    An arbitrary file upload vulnerability in the /utils/uploadFile component of Hubert Imoveis e Administracao Ltda Hub v2.0 1.27.3 allows attackers to execute arbitrary code via uploading a crafted PDF file.

  • CVE-2025-65784MedJan 13, 2026
    risk 0.42cvss 6.5epss 0.00

    Insecure permissions in Hubert Imoveis e Administracao Ltda Hub v2.0 1.27.3 allows authenticated attackers with low-level privileges to access other users' information via a crafted API request.