VYPR

9router

by Decolua

Source repositories

CVEs (21)

  • CVE-2026-59800CriJul 7, 2026
    risk 0.00cvss 9.8epss 0.02

    9Router before 0.4.44 contains an OS command injection vulnerability in the unauthenticated POST /api/tunnel/tailscale-install endpoint (this route is not covered by the dashboard middleware matcher, so no authorization check is applied). The sudoPassword field from the request…

Page 2 of 2