VYPR

Evolution WebServer

by ST Engineering IDirect

CVEs (2)

  • CVE-2026-94216MedSep 21, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was determined in ST Engineering iDirect Evolution and Velocity WebServer Evolution. This vulnerability affects unknown code of the file /authorize of the component HTTP Request Handler. Executing a manipulation of the argument Success can lead to http response…

  • CVE-2026-94214MedSep 21, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in ST Engineering iDirect Evolution and Velocity WebServer Evolution up to 20260717. This affects an unknown part of the component Location Header Handler. Performing a manipulation of the argument Host results in open redirect. It is possible to…