VYPR

Waoowaoo

by WaooAI

CVEs (2)

  • CVE-2026-15594Jul 13, 2026
    risk 0.00cvss epss 0.00

    A vulnerability was found in waooAI waoowaoo up to 0.4.1. Impacted is the function stablePublicIdFromStorageKey in the library src/lib/media/hash.ts of the component Media Handler. The manipulation of the argument storageKey results in improper authorization. The attack may be…

  • CVE-2026-15557Jul 13, 2026
    risk 0.00cvss epss 0.00

    A weakness has been identified in waooAI waoowaoo up to 0.4.1. Affected by this vulnerability is the function getInternalTaskSession/getAuthSession/requireUserAuth/requireProjectAuth/requireProjectAuthLight in the library src/lib/api-auth.ts of the component Internal Task Header…