VYPR
Vendor

Slack

Products
2
CVEs
3
Across products
3
Status
Private

Products

2

Recent CVEs

3
  • CVE-2019-14366HigNov 12, 2019
    risk 0.49cvss 7.5epss 0.02

    WP SlackSync plugin through 1.8.5 for WordPress leaks a Slack Access Token in source code. An attacker can obtain a lot of information about the victim's Slack (channels, members, etc.).

  • CVE-2026-25793HigFeb 6, 2026
    risk 0.46cvss 8.1epss 0.00

    Nebula is a scalable overlay networking tool. In versions from 1.7.0 to 1.10.2, when using P256 certificates (which is not the default configuration), it is possible to evade a blocklist entry created against the fingerprint of a certificate by using ECDSA Signature Malleability…

  • CVE-2020-11498HigApr 2, 2020
    risk 0.00cvss 8.8epss 0.03

    Slack Nebula through 1.1.0 contains a relative path vulnerability that allows a low-privileged attacker to execute code in the context of the root user via tun_darwin.go or tun_windows.go. A user can also use Nebula to execute arbitrary code in the user's own context, e.g., for…