VYPR

Sencho

by Studio Saelix

CVEs (3)

  • CVE-2026-108522HigOct 11, 2026
    risk 0.47cvss 8.3epss —

    A vulnerability was found in Studio-Saelix Sencho up to 0.94.1. This affects an unknown part of the file /api/auth/login of the component Login Endpoint. Performing a manipulation of the argument X-Forwarded-For results in improper authentication. The attack is possible to be…

  • CVE-2026-108521MedOct 11, 2026
    risk 0.31cvss 4.7epss —

    A vulnerability has been found in Studio-Saelix Sencho up to 0.97.1. Affected by this issue is the function isValidRemoteUrl of the file backend/src/utils/validation.ts of the component Add Remote Node API Endpoint. Such manipulation leads to server-side request forgery. The…

  • CVE-2026-108523MedOct 11, 2026
    risk 0.21cvss 4.3epss —

    A vulnerability was determined in Studio-Saelix Sencho up to 0.94.1. This vulnerability affects unknown code of the file outboundTarget.ts of the component git-sources Browse API Endpoint. Executing a manipulation of the argument repo_url can lead to server-side request forgery.…