VYPR

Hypr Server

by Hypr

CVEs (5)

  • CVE-2024-8273HigDec 11, 2025
    risk 0.57cvss 8.8epss 0.00

    Authentication Bypass by Spoofing vulnerability in HYPR Server allows Identity Spoofing.This issue affects Server: before 10.1.

  • CVE-2023-1837HigMay 23, 2023
    risk 0.55cvss 8.5epss 0.01

    Missing Authentication for critical function vulnerability in HYPR Server allows Authentication Bypass when using Legacy APIs.This issue affects HYPR Server: before 8.0 (with enabled Legacy APIs)

  • CVE-2022-2193HigJul 19, 2022
    risk 0.49cvss 7.5epss 0.01

    Insecure Direct Object Reference vulnerability in HYPR Server before version 6.14.1 allows remote authenticated attackers to add a FIDO2 authenticator to arbitrary accounts via parameter tampering in the Device Manager page. This issue affects: HYPR Server versions prior to…

  • CVE-2022-2192HigJul 19, 2022
    risk 0.49cvss 7.5epss 0.01

    Forced Browsing vulnerability in HYPR Server version 6.10 to 6.15.1 allows remote attackers with a valid one-time recovery token to elevate privileges via path tampering in the Magic Link page. This issue affects: HYPR Server versions later than 6.10; version 6.15.1 and prior…

  • CVE-2026-1712MedMar 25, 2026
    risk 0.38cvss epss 0.00

    Incorrect privilege assignment vulnerability in HYPR Server allows Privilege Escalation.This issue affects HYPR Server: from 10.5.1 before 10.7.