VYPR

Flex

by SQL Ledger

CVEs (1)

  • CVE-2025-15645MedMay 19, 2026
    risk 0.30cvss 4.6epss 0.00

    Ledger Nano X, Flex, and Stax devices contain a denial of service vulnerability in the MCU firmware update process due to missing validation of the reset_handler parameter during firmware flashing. An attacker can provide a crafted reset_handler address pointing to invalid…