VYPR

keyless entry cloud service

by Akia

CVEs (1)

  • CVE-2026-97898HigSep 25, 2026
    risk 0.55cvss —epss —

    Insecure Direct Object Reference / missing object-level authorization in the Akia keyless entry cloud service. The unlock action is relying on a client-supplied room/door identifier that is not properly authorized server-side against the authenticated guest's booking. An…