Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-pqhq-3jj2-24m4 |
|
MINI-pqhq-3jj2-24m4 |
| MINI-47gv-w2xw-ff9f |
|
MINI-47gv-w2xw-ff9f |
| MINI-pc46-7427-6jrh |
|
MINI-pc46-7427-6jrh |
| MINI-468g-wpjc-5cpm |
|
MINI-468g-wpjc-5cpm |
| MINI-283v-jchq-6397 |
|
MINI-283v-jchq-6397 |
| MINI-pmqv-pm32-x3j4 |
|
MINI-pmqv-pm32-x3j4 |
| MINI-25m8-vfg8-36g8 |
|
MINI-25m8-vfg8-36g8 |
| MINI-pf7h-c9gw-m43x |
|
MINI-pf7h-c9gw-m43x |
| MINI-294x-4pjx-98vj |
|
MINI-294x-4pjx-98vj |
| MINI-pmq9-hq4j-xfpv |
|
MINI-pmq9-hq4j-xfpv |
| MINI-2375-2vhr-5m56 |
|
MINI-2375-2vhr-5m56 |
| MINI-phrh-85qf-84rr |
|
MINI-phrh-85qf-84rr |
| MINI-28qh-p859-4j48 |
|
MINI-28qh-p859-4j48 |
| MINI-2345-f3vw-3fq9 |
|
MINI-2345-f3vw-3fq9 |
| MINI-8hx7-2v9r-4jx6 |
|
MINI-8hx7-2v9r-4jx6 |
| MINI-276v-f64j-3jwc |
|
MINI-276v-f64j-3jwc |
| MINI-8mjv-4cwg-cm22 |
|
MINI-8mjv-4cwg-cm22 |
| MINI-rg73-4gjw-jrw2 |
|
MINI-rg73-4gjw-jrw2 |
| MINI-mf6f-f8fx-w6xm |
|
MINI-mf6f-f8fx-w6xm |
| MINI-3hpp-8vh2-xgmw |
|
MINI-3hpp-8vh2-xgmw |
| MINI-23c6-h72q-qh59 |
|
MINI-23c6-h72q-qh59 |
| CVE-2026-45005 |
|
Vulnerability in openclaw (CVE-2026-45005)
vulnerability in openclaw (CVE-2026-45005). Data can be tampered with by attackers.
|
| CVE-2026-5172 |
|
Vulnerability in CVE-2026-5172 (CVE-2026-5172)
vulnerability in CVE-2026-5172 (CVE-2026-5172). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5266 |
|
Information Disclosure in CVE-2026-5266 (CVE-2026-5266)
vulnerability in CVE-2026-5266 (CVE-2026-5266). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4891 |
|
Vulnerability in dos (CVE-2026-4891)
vulnerability in dos (CVE-2026-4891). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4893 |
|
Vulnerability in CVE-2026-4893 (CVE-2026-4893)
vulnerability in CVE-2026-4893 (CVE-2026-4893). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7308 |
|
Cross-Site Scripting (XSS) in CVE-2026-7308 (CVE-2026-7308)
cross-site scripting in CVE-2026-7308 (CVE-2026-7308). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7210 |
|
Vulnerability in libpython (CVE-2026-7210)
vulnerability in libpython (CVE-2026-7210). Risk of unauthorized operations or information disclosure. Exploitable via ``xml.parsers.expat``.
|
| CVE-2026-45004 |
|
Vulnerability in openclaw (CVE-2026-45004)
vulnerability in openclaw (CVE-2026-45004). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45006 |
|
Vulnerability in openclaw (CVE-2026-45006)
vulnerability in openclaw (CVE-2026-45006). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44998 |
|
Authorization Flaw in openclaw (CVE-2026-44998)
vulnerability in openclaw (CVE-2026-44998). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45001 |
|
Vulnerability in ssrf (CVE-2026-45001)
vulnerability in ssrf (CVE-2026-45001). Data can be tampered with by attackers.
|
| CVE-2026-4890 |
|
Vulnerability in dos (CVE-2026-4890)
vulnerability in dos (CVE-2026-4890). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45003 |
|
Vulnerability in openclaw (CVE-2026-45003)
vulnerability in openclaw (CVE-2026-45003). Confidential information can be exposed externally.
|
| CVE-2026-45000 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-45000)
SSRF in ssrf (CVE-2026-45000). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45002 |
|
Authorization Flaw in openclaw (CVE-2026-45002)
vulnerability in openclaw (CVE-2026-45002). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8305 |
|
Authentication Bypass in CVE-2026-8305 (CVE-2026-8305)
authentication bypass in CVE-2026-8305 (CVE-2026-8305). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4892 |
|
Vulnerability in CVE-2026-4892 (CVE-2026-4892)
vulnerability in CVE-2026-4892 (CVE-2026-4892). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44991 |
|
Authorization Flaw in openclaw (CVE-2026-44991)
vulnerability in openclaw (CVE-2026-44991). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44999 |
|
Vulnerability in openclaw (CVE-2026-44999)
vulnerability in openclaw (CVE-2026-44999). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43638 |
|
Vulnerability in CVE-2026-43638 (CVE-2026-43638)
vulnerability in CVE-2026-43638 (CVE-2026-43638). Risk of unauthorized operations or information disclosure. Exploitable via `POST /ciphers/import-organization`.
|
| CVE-2026-44994 |
|
Vulnerability in openclaw (CVE-2026-44994)
vulnerability in openclaw (CVE-2026-44994). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44992 |
|
Vulnerability in openclaw (CVE-2026-44992)
vulnerability in openclaw (CVE-2026-44992). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2026-43640 |
|
Vulnerability in CVE-2026-43640 (CVE-2026-43640)
vulnerability in CVE-2026-43640 (CVE-2026-43640). Confidential information can be exposed externally.
|
| CVE-2026-44996 |
|
Path Traversal in openclaw (CVE-2026-44996)
path traversal in openclaw (CVE-2026-44996). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44995 |
|
Vulnerability in openclaw (CVE-2026-44995)
vulnerability in openclaw (CVE-2026-44995). Successful exploitation can lead to full system takeover.
|
| CVE-2026-44997 |
|
Vulnerability in openclaw (CVE-2026-44997)
vulnerability in openclaw (CVE-2026-44997). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-43639 |
|
Vulnerability in CVE-2026-43639 (CVE-2026-43639)
vulnerability in CVE-2026-43639 (CVE-2026-43639). Successful exploitation can lead to full system takeover. Exploitable via `POST /providers/{providerId}/clients/existing`.
|
| CVE-2026-44993 |
|
Vulnerability in openclaw (CVE-2026-44993)
vulnerability in openclaw (CVE-2026-44993). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-44413 |
|
Vulnerability in jetbrains (CVE-2026-44413)
vulnerability in jetbrains (CVE-2026-44413). Confidential information can be exposed externally.
|