VYPR

MiR Robot

by Mobile Industrial Robots

CVEs (2)

  • CVE-2025-13819MedDec 1, 2025
    risk 0.40cvss 6.1epss 0.00

    Open redirect in the web server component of MiR Robot and Fleet software allows a remote attacker to redirect users to arbitrary external websites via a crafted parameter, facilitating phishing or social engineering attacks.

  • CVE-2025-9225MedAug 20, 2025
    risk 0.36cvss 5.5epss 0.00

    Stored cross-site scripting (XSS) in the web interface of MiR software versions prior to 3.0.0 on MiR Robots and MiR Fleet allows execution of arbitrary JavaScript code in a victim’s browser