VYPR

G520 Series G526 G526RP G527 G528

by Lantronix

CVEs (2)

  • CVE-2026-91191HigSep 29, 2026
    risk 0.49cvss 7.5epss —

    The device's update mechanism includes conditions that allow unauthorized software packages to be accepted as authentic. During the boot process, the stock done function disables signature verification in the OPKG configuration before restoring optional packages from a writable,…

  • CVE-2026-84409HigSep 29, 2026
    risk 0.49cvss 7.5epss —

    The device's update mechanism retrieves metadata for software updates over an unencrypted HTTP connection and stores portions of that metadata for later use. A management interface subsequently returns this stored value in a JSON response, and the web interface responsible for…