VYPR
Vendor

PowerSYSTEM

Products
3
CVEs
4
Across products
4
Status
Private

Products

3

Recent CVEs

4
  • CVE-2026-26289HigMay 12, 2026
    risk 0.53cvss 8.2epss 0.00

    PowerSYSTEM Center REST API endpoint for device account export allows an authenticated user with limited permissions to expose sensitive information normally restricted to administrative permissions only.

  • CVE-2026-35555MedMay 12, 2026
    risk 0.41cvss 6.3epss 0.00

    PowerSYSTEM Center feature for device project groups allows an authenticated user with limited permissions to perform an unauthorized deletion of project groups.

  • CVE-2026-33570MedMay 12, 2026
    risk 0.37cvss 5.7epss 0.00

    PowerSYSTEM Center REST API endpoint for devices allows a low privilege authenticated user to access information normally limited by operational permissions.

  • CVE-2026-35504MedMay 12, 2026
    risk 0.36cvss 5.5epss 0.00

    PowerSYSTEM Center email notification service is affected by a CRLF injection vulnerability when using SMTPS communication.