VYPR
Vendor

Xryj920

Products
1
CVEs
7
Across products
7
Status
Private

Products

1

Recent CVEs

7
  • CVE-2026-82808HigAug 31, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was identified in Inbox Foundry ActiveInbox Extension up to 7.10.24 on Chrome. Impacted is an unknown function of the file dist/service-worker.production-esm.js of the component Google OAuth Client Secret. Such manipulation leads to hard-coded credentials. The…

  • CVE-2026-82813MedAug 31, 2026
    risk 0.35cvss 5.4epss 0.00

    A vulnerability was detected in BEN Group TubeBuddy for YouTube Extension up to 5.8.4 on Chrome. This impacts the function TBGlobal.GetToken of the file tubebuddymaster1.js. The manipulation of the argument t/c/r results in insufficient verification of data authenticity. It is…

  • CVE-2026-96680MedSep 23, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was detected in ByteDance Coze Scraper Extension up to 2.0.2. Affected by this vulnerability is the function chrome.runtime.onMessageExternal.addListener of the file static/background/index.js of the component External Message Handler. The manipulation of the…

  • CVE-2026-82809MedAug 31, 2026
    risk 0.28cvss 4.3epss 0.00

    A security flaw has been discovered in vidIQ Vision for YouTube Extension 3.199.0 on Chrome. The affected element is the function window.addEventListener of the component postMessage Handler. Performing a manipulation of the argument vidiqEvent results in information disclosure.…

  • CVE-2026-19988MedAug 17, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was detected in Alaev SEO Tools Extension up to 1.0.10 on Chrome. This impacts the function addDiv of the file src/popup.html of the component Popup UI. Performing a manipulation results in basic cross site scripting. The attack can be initiated remotely. The…

  • CVE-2026-82810LowAug 31, 2026
    risk 0.21cvss 3.3epss 0.00

    A weakness has been identified in extension.vn 2FA Authenticator Extension 1.0.0.2 on Chrome. The impacted element is the function chrome.runtime.onMessageExternal.addListener of the component Background Service Worker. Executing a manipulation of the argument sender.id can lead…

  • CVE-2026-19992LowAug 17, 2026
    risk 0.20cvss 3.1epss 0.00

    A flaw has been found in Orange View Limited DualSafe Password Manager & Digital Vault Extension up to 1.4.35 on Chrome. Affected is an unknown function of the component postMessage-based Bridge. Executing a manipulation can lead to information disclosure. The attack can be…