VYPR

TimeWorks

by Keiyo System

CVEs (1)

  • CVE-2025-41428MedJun 3, 2025
    risk 0.34cvss 5.3epss 0.01

    Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in TimeWorks 10.0 to 10.3. If exploited, arbitrary JSON files on the server may be viewed by a remote unauthenticated attacker.