VYPR

Recce

by Recce

CVEs (1)

  • CVE-2026-49360higJul 2, 2026
    risk 0.45cvss epss

    ### Impact Recce OSS server deployments that expose the server to an untrusted network without authentication are vulnerable to unauthenticated SQL execution through the query run API. When Recce is configured with a DuckDB-backed project, an attacker can use DuckDB filesystem…