VYPR
Vendor

The Missing Link

Products
3
CVEs
3
Across products
3
Status
Private

Products

3

Recent CVEs

3
  • CVE-2023-22857HigMar 6, 2023
    risk 0.55cvss 8.5epss 0.00

    A stored Cross-site Scripting (XSS) vulnerability in BlogEngine.NET 3.3.8.0, allows injection of arbitrary JavaScript in the security context of a blog visitor through an injection of a malicious payload into a blog post.

  • CVE-2022-40295MedOct 31, 2022
    risk 0.32cvss 4.9epss 0.00

    The application was vulnerable to an authenticated information disclosure, allowing administrators to view unsalted user passwords, which could lead to the compromise of plaintext passwords via offline attacks.

  • CVE-2026-57867Jul 7, 2026
    risk 0.00cvss epss 0.00

    MicroRealEstate allows adversaries to bypass authentication due to a lack of token state management. This would permit adversaries targeting MicroRealEstate deployments to brute-force One-Time Passwords (OTP) to log in as any user. This issue affects MicroRealEstate: through…