VYPR

Virtuagym

by Virtuagym

CVEs (1)

  • CVE-2026-12587Aug 26, 2026
    risk 0.00cvss epss

    The vulnerability allows the unauthorised generation of physical access QR codes due to the use of hard-coded credentials within the application. The generation mechanism uses the 'badge_number' parameter as the HMAC private key, the value of which remains static and is…