VYPR

FlexCity/Kiosk

by Universal Software Inc.

CVEs (3)

  • CVE-2026-1619Feb 13, 2026
    risk 0.00cvss epss 0.00

    Authorization Bypass Through User-Controlled Key vulnerability in Universal Software Inc. FlexCity/Kiosk allows Exploitation of Trusted Identifiers.This issue affects FlexCity/Kiosk: from 1.0 before 1.0.36.

  • CVE-2026-1618Feb 13, 2026
    risk 0.00cvss epss 0.00

    Authentication Bypass Using an Alternate Path or Channel vulnerability in Universal Software Inc. FlexCity/Kiosk allows Privilege Escalation.This issue affects FlexCity/Kiosk: from 1.0 before 1.0.36.

  • CVE-2025-14349Feb 13, 2026
    risk 0.00cvss epss 0.00

    Privilege Defined With Unsafe Actions, Missing Authentication for Critical Function vulnerability in Universal Software Inc. FlexCity/Kiosk allows Accessing Functionality Not Properly Constrained by ACLs, Privilege Escalation.This issue affects FlexCity/Kiosk: from 1.0 before 1.0.36.