PatchSiren

MeWare Software Development Inc. CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH MeWare Software Development Inc. CVE published 2026-04-30

CVE-2026-7402

CVE-2026-7402 is an Improper Control of Interaction Frequency vulnerability in MeWare Software Development Inc. PDKS, allowing Flooding. This issue affects PDKS: from V16.20200313 before VMYR_3.5.2025117. The vulnerability has a CVSS score of 8.1 and is classified as HIGH severity.

HIGH MeWare Software Development Inc. CVE published 2026-04-30

CVE-2026-7399

CVE-2026-7399 is a high-severity vulnerability (CVSS Score: 8.1) affecting MeWare Software Development Inc.'s PDKS software. The issue, described as an authorization bypass through a user-controlled key, could potentially allow for privilege abuse. The vulnerability impacts PDKS versions from V16.20200313 up to but not including VMYR_3.5.2025117. The CVE was published on 2026-04-30 and last modified on 2026-06-06.

MEDIUM MeWare Software Development Inc. CVE published 2026-04-30

CVE-2026-7382

CVE-2026-7382 is a vulnerability in MeWare Software Development Inc. PDKS, classified as Exposure of Sensitive Information to an Unauthorized Actor and Exposure of private personal information to an unauthorized actor. This issue affects PDKS versions from V16.20200313 before VMYR_3.5.2025117. The vulnerability has a CVSS score of 6.5 and a severity of MEDIUM.