VYPR

WDU webpage

by Garmin

CVEs (1)

  • CVE-2025-27852MedMay 13, 2026
    risk 0.33cvss 5.0epss 0.00

    The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a reflected cross site scripting (XSS) attack. This allows an attacker on the local network segment to execute arbitrary JavaScript code within the context of the WDU webpage. Full administrator level…