VYPR

EdgeEver

by EdgeEver

CVEs (1)

  • CVE-2026-108727MedOct 11, 2026
    risk 0.28cvss 4.3epss —

    EdgeEver through 1.108.0 contains a missing authorization vulnerability in the Hono API memo-template routes that allows holders of scoped API tokens to bypass token scope restrictions because template handlers never call requireScopes. Attackers with a token lacking write:memos…