VYPR

Uniflow Online

by NT-ware

CVEs (2)

  • CVE-2024-1621HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    The registration process of uniFLOW Online (NT-ware product) apps, prior to and including version 2024.1.0, can be compromised when email login is enabled on the tenant. Those tenants utilising email login in combination with Microsoft Safe Links or similar are impacted. This…

  • CVE-2026-92378MedSep 23, 2026
    risk 0.27cvss —epss 0.00

    A session management vulnerability exists in the Legacy UI Reduced Function Login feature of NT-ware uniFLOW Online. Under specific timing conditions during Service Offline Emergency Mode, a previously authenticated session may be retained after logout, which could allow a…