VYPR

LaunchServer

by GravitLauncher

CVEs (1)

  • CVE-2026-54617criJul 2, 2026
    risk 0.59cvss epss

    ### Summary An unauthenticated path traversal in the LaunchServer HTTP file server (`FileServerHandler`) lets any remote actor read **any file** readable by the LaunchServer process (e.g. `../../../../etc/passwd`). This is a generic arbitrary-file-read primitive, so the fix must…