mygardyn cloud_api CVE Vulnerabilities (5)

CVEs: 5 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting mygardyn cloud_api (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-32662 Development and test API endpoints are present that mirror production functionality. [email protected] 6.9 0.03% 2026-04-03 2026-04-22
CVE-2026-32646 A specific administrative endpoint is accessible without proper authentication, exposing device management functions. [email protected] 8.7 0.07% 2026-04-03 2026-04-22
CVE-2026-28767 A specific administrative endpoint notifications is accessible without proper authentication. [email protected] 6.9 0.06% 2026-04-03 2026-04-22
CVE-2026-28766 A specific endpoint exposes all user account information for registered Gardyn users without requiring authentication. [email protected] 9.2 0.07% 2026-04-03 2026-04-22
CVE-2026-25197 A specific endpoint allows authenticated users to pivot to other user profiles by modifying the id number in the API call. [email protected] 9.3 0.03% 2026-04-03 2026-04-22
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence