VYPR

server

by Spacebarchat

CVEs (2)

  • CVE-2026-70618Aug 5, 2026
    risk 0.00cvss epss

    Spacebar Server before commit 51da17c contains a missing authorization vulnerability that allows any authenticated user to enumerate complete guild membership by querying the GET /guilds/{guild_id}/roles/{role_id}/member-ids endpoint without guild membership verification.…

  • CVE-2026-70617Aug 5, 2026
    risk 0.00cvss epss

    Spacebar Server before commit dcfd910 contains a missing authorization vulnerability that allows any authenticated attacker to add themselves to arbitrary group DM channels by sending a PUT request to the channels recipient endpoint without membership verification. Attackers can…