VYPR
Vendor

Cgauge

Products
2
CVEs
1
Across products
2
Status
Private

Products

2

Recent CVEs

1
  • CVE-2026-76833HigAug 20, 2026
    risk 0.51cvss 7.8epss

    @cgauge/yaml npm package contains an arbitrary code execution vulnerability that allows attackers to execute arbitrary JavaScript by embedding a custom !js YAML tag whose construct callback unconditionally calls eval() on attacker-supplied string values during document parsing.…