Blusparkglobal's vulnerability footprint concentrates in its Bluvoyix product and centers on information-disclosure and authentication weaknesses, including exposure of sensitive data to unauthorized parties, cleartext storage practices, and improper authentication and privilege-management control. Treat this as a focused, niche vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Blusparkglobal over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-22238CRITICAL The vulnerability exists in BLUVOYIX due to improper authentication in the BLUVOYIX admin APIs. An unauthenticated remote attacker could exploit this vulnerability by sending speci | Jan 14, 2026 | 9.8 | 34 | NO | NO |
CVE-2026-22236CRITICAL The vulnerability exists in BLUVOYIX due to improper authentication in the BLUVOYIX backend APIs. An unauthenticated remote attacker could exploit this vulnerability by sending spe | Jan 14, 2026 | 9.8 | 34 | NO | NO |
CVE-2026-22237CRITICAL The vulnerability exists in BLUVOYIX due to the exposure of sensitive internal API documentation. An unauthenticated remote attacker could exploit this vulnerability by sending spe | Jan 14, 2026 | 9.8 | 30 | NO | NO |
CVE-2026-22240HIGH The vulnerability exists in BLUVOYIX due to an improper password storage implementation and subsequent exposure via unauthenticated APIs. An unauthenticated remote attacker could e | Jan 14, 2026 | 7.5 | 29 | NO | NO |
CVE-2026-22239MEDIUM The vulnerability exists in BLUVOYIX due to design flaws in the email sending API. An unauthenticated remote attacker could exploit this vulnerability by sending specially crafted | Jan 14, 2026 | 5.3 | 23 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Blusparkglobal.
Media articles that mention a CVE ID that affects a product developed by Blusparkglobal — matched by CVE ID, not by vendor name.