VYPR

Spectralight

by Arista

CVEs (1)

  • CVE-2026-102155HigOct 6, 2026
    risk 0.55cvss 8.5epss —

    An XML External Entity (XXE) injection vulnerability in the WiFi-server Spectralight application allows any authenticated user to send malicious requests, leading to arbitrary local file disclosure and partial denial of service.