CVE-2025-2102: Hypr Passwordless

Medium severity, CVSS 5.7. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Passwordless on Windows allows Privilege Escalation.This issue affects HYPR Passwordless: before 10.1.

Affected products

  • Hypr Passwordless: before 10.1 (fixed in 10.1)

Published 2025-05-21. Last modified 2026-06-17.