VYPR

DevonWay

by Ideagen

CVEs (1)

  • CVE-2026-22587MedJan 8, 2026
    risk 0.36cvss 5.5epss 0.00

    Ideagen DevonWay contains a stored cross site scripting vulnerability. A remote, authenticated attacker could craft a payload in the 'Reports' page that executes when another user views the report. Fixed in 2.62.4 and 2.62 LTS.