VYPR

Chatbot

by HiJiffy

CVEs (2)

  • CVE-2026-4263MedMar 26, 2026
    risk 0.45cvss epss 0.00

    Vulnerability of incorrect authorization in HiJiffy Chatbot allows an attacker to download private messages from other users via the parameter  'visitor' in '/api/v1/webchat/message'.

  • CVE-2026-4262MedMar 26, 2026
    risk 0.45cvss epss 0.00

    Vulnerability of incorrect authorization in HiJiffy Chatbot allows an attacker to download private messages from other users via the parameter 'ID' in '/api/v1/download//'.