Skip to content
Noroxi

HYPR records

15 published records for vendor hypr.

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

15 records
  • CVE-2023-0834
    39Monitor

    Incorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on MacOS allows Privilege Escalation.This issue

    CriticalCVSS 9.8No exploitEPSS 0%

    hypr · workforce accessApr 28, 2023

  • CVE-2022-2193
    35Monitor

    Insecure Direct Object Reference vulnerability in HYPR Server before version 6.14.1 allows remote authenticated attackers to add a FIDO2 aut

    HighCVSS 8.8No exploitEPSS 1%

    hypr · hypr serverJul 19, 2022

  • CVE-2022-2192
    35Monitor

    Forced Browsing vulnerability in HYPR Server version 6.10 to 6.15.1 allows remote attackers with a valid one-time recovery token to elevate

    HighCVSS 8.8No exploitEPSS 1%

    hypr · hypr serverJul 19, 2022

  • CVE-2023-1477
    35Monitor

    Improper Authentication vulnerability in HYPR Keycloak Authenticator Extension allows Authentication Abuse.This issue affects HYPR Keycloak

    HighCVSS 8.8No exploitEPSS 1%

    hypr · keycloak authenticatorApr 28, 2023

  • CVE-2023-1837
    35Monitor

    Missing Authentication for critical function vulnerability in HYPR Server allows Authentication Bypass when using Legacy APIs.This issue aff

    HighCVSS 8.8No exploitEPSS 1%

    hypr · hypr serverMay 23, 2023

  • CVE-2022-3258
    35Monitor

    Incorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on Windows allows Authentication Abuse.

    HighCVSS 8.8No exploitEPSS 0%

    hypr · workforce accessNov 3, 2022

  • CVE-2022-1984
    31Monitor

    This issue affects: HYPR Windows WFA versions prior to 7.2; Unsafe Deserialization vulnerability in HYPR Workforce Access (WFA) before versi

    HighCVSS 7.8No exploitEPSS 0%

    hypr · workforce accessJul 19, 2022

  • CVE-2023-6336
    31Monitor

    Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows User-Controlled Filena

    HighCVSS 7.8No exploitEPSS 0%

    hypr · workforce accessJan 16, 2024

  • CVE-2023-6335
    31Monitor

    Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on Windows allows User-Controlled File

    HighCVSS 7.8No exploitEPSS 0%

    hypr · workforce accessJan 16, 2024

  • CVE-2023-6334
    31Monitor

    Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HYPR Workforce Access on Windows allows Overflow Bu

    HighCVSS 7.8No exploitEPSS 0%

    hypr · workforce accessJan 16, 2024

  • CVE-2024-8273
    28Monitor

    Authentication Bypass by Spoofing vulnerability in HYPR Server allows Identity Spoofing.This issue affects Server: before 10.1.

    HighCVSS 7.1No exploitEPSS 0%

    hypr · hypr serverDec 11, 2025

  • CVE-2024-0068
    28Monitor

    Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows File Manipulation.This

    HighCVSS 7.1No exploitEPSS 0%

    hypr · workforce accessFeb 29, 2024

  • CVE-2026-2414
    22Monitor

    Authorization bypass through User-Controlled key vulnerability in HYPR Server allows Privilege Escalation.This issue affects Server: from 9.

    MediumCVSS 5.6No exploitEPSS 0%

    hypr · hyprMar 25, 2026

  • CVE-2023-5097
    22Monitor

    Improper Input Validation vulnerability in HYPR Workforce Access on Windows allows Path Traversal.This issue affects Workforce Access: befor

    MediumCVSS 5.5No exploitEPSS 0%

    hypr · workforce accessJan 16, 2024

  • CVE-2024-1721
    22Monitor

    Improper Verification of Cryptographic Signature vulnerability in HYPR Passwordless on Windows allows Malicious Software Update.This issue a

    MediumCVSS 5.6No exploitEPSS 0%

    hypr · passwordlessMay 21, 2024