VYPR

GN4

by Naviga

CVEs (1)

  • CVE-2025-34293HigOct 24, 2025
    risk 0.56cvss epss 0.00

    GN4 Publishing System versions prior to 2.6 contain an insecure direct object reference (IDOR) vulnerability via the API. Authenticated requests to the API's object endpoints allow an authenticated user to request arbitrary user IDs and receive sensitive account data for those…