| CVE-2026-97160 |
Joomla Extension - lomart.fr - Authenticated, privileged PHP command injection in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29 |
26.09.2026 |
|
| CVE-2026-97161 |
Joomla Extension - lomart.fr - Various path traversal / file access vectors in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29 |
26.09.2026 |
|
| CVE-2026-97162 |
Joomla Extension - lomart.fr - Various SQL injection vectors in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29 |
26.09.2026 |
|
| CVE-2026-97163 |
Joomla Extension - lomart.fr - Unauthenticated remote code installation in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29 |
26.09.2026 |
|
| CVE-2026-94131 |
Joomla Extension - acymailing.com - Unauthenticated arbitrary file deletion in AcyMailing Enterprise extension < 11.1.0 |
26.09.2026 |
|
| CVE-2026-94132 |
Joomla Extension - acymailing.com - Remote Code Execution vulnerability in mailbox action feature in AcyMailing Enterprise extension < 11.1.0 |
26.09.2026 |
|
| CVE-2026-94130 |
Joomla Extension - joomlaboat.com - Unauthenticated SQL injection in YouTube Gallery extension < 5.7.3 |
26.09.2026 |
|
| CVE-2026-100626 |
capgo through 12.128.2 IDOR via PUT /app icon endpoint |
26.09.2026 |
|
| CVE-2026-100600 |
ClawHub before 8c2de6c506 Quota Exhaustion via Anonymous API |
26.09.2026 |
|
| CVE-2026-100601 |
ClawHub SSRF via Unchecked DNS Resolution in Profile Image |
26.09.2026 |
|
| CVE-2026-100602 |
ClawHub Changelog Preview Information Disclosure via Authorization Bypass |
26.09.2026 |
|
| CVE-2026-100603 |
ClawHub before 8c2de6c506 Skill Hiding via Coordinated Reports |
26.09.2026 |
|
| CVE-2026-100604 |
ClawHub Authentication Bypass via Former Publisher Skill Control |
26.09.2026 |
|
| CVE-2026-100605 |
Flowise through 3.1.4 Missing Authorization via Chat Message Routes |
26.09.2026 |
|
| CVE-2026-100606 |
Flowise through 3.1.4 Authentication Bypass via SSO Email Match |
26.09.2026 |
|
| CVE-2026-100607 |
Flowise through 3.1.4 Authentication Bypass via Email-Only SSO |
26.09.2026 |
|
| CVE-2026-100608 |
Flowise through 3.1.4 Authorization Bypass via BullMQ Dashboard |
26.09.2026 |
|
| CVE-2026-100609 |
Flowise through 3.1.4 Insecure Direct Object Reference via Credential |
26.09.2026 |
|
| CVE-2026-100610 |
Flowise through 3.1.4 Missing Authorization via upsert-history |
26.09.2026 |
|
| CVE-2026-100611 |
Capgo apikey_manager Role Privilege Escalation via Incomplete Role Deny-list |
26.09.2026 |
|
| CVE-2026-100612 |
Capgo SSO Provider ID Authentication Bypass via Incomplete Migration |
26.09.2026 |
|
| CVE-2026-100613 |
capgo.app Authorization Bypass via Stale Channel Permission Overrides |
26.09.2026 |
|
| CVE-2026-100614 |
Capgo before 12.244.1 Cross-Tenant Image Overwrite via Metadata Worker |
26.09.2026 |
|
| CVE-2026-100615 |
Cap-go capgo.app before 12.267.1 Privilege Escalation via API Key Rotation |
26.09.2026 |
|
| CVE-2026-100616 |
capgo.app Authentication Bypass via PostgREST customer_id Mutation |
26.09.2026 |
|
| CVE-2026-100617 |
Cap-go capgo.app Authorization Bypass via channel_permission_overrides |
26.09.2026 |
|
| CVE-2026-100618 |
Capgo App Icon Update Privilege Escalation via Service-Role Worker |
26.09.2026 |
|
| CVE-2026-100619 |
Capgo OTA Manifest Poisoning via app_versions.manifest Bypass |
26.09.2026 |
|
| CVE-2026-100620 |
Capgo CLI through 7.98.2 Excessive Permissions via Overpermissioned Play Console Service Account |
26.09.2026 |
|
| CVE-2026-100621 |
capgo.app Content-Lock Bypass via r2-direct Bundle Mutation |
26.09.2026 |
|
| CVE-2026-100622 |
capgo.app through 12.129.0 Cache Restoration of Deleted Bundles |
26.09.2026 |
|
| CVE-2026-100623 |
Capgo Authentication Bypass via Direct PostgREST org_users Table Write |
26.09.2026 |
|
| CVE-2026-100624 |
Capgo.app before 12.264.5 Upload Expiry Bypass via build upload |
26.09.2026 |
|
| CVE-2026-100625 |
Capgo Build Upload Proxy Authorization Bypass via TUS Resource |
26.09.2026 |
|
| CVE-2026-100627 |
Capgo bundle promotion API channel RBAC deny override bypass |
26.09.2026 |
|
| CVE-2026-100628 |
capgo.app before 12.128.12 Authentication Bypass via apikey |
26.09.2026 |
|
| CVE-2026-100629 |
Capgo backend before 12.127.5 Privilege Escalation via role_bindings PATCH |
26.09.2026 |
|
| CVE-2026-100630 |
AVideo Stored XSS via HTML Entity Bypass in trailer1 Field |
26.09.2026 |
|
| CVE-2026-100631 |
Parse Server 9.0.0 Unauthenticated Installation Deletion via Operator Injection |
26.09.2026 |
|
| CVE-2026-100632 |
Parse Server 9.0.0 before 9.10.1 Protected Fields Disclosure via LiveQuery |
26.09.2026 |
|
| CVE-2026-100633 |
SiYuan 3.8.0 through 3.8.3 Path Traversal via MCP File Operations |
26.09.2026 |
|
| CVE-2026-100634 |
SiYuan before v3.8.4 Missing Authorization via siyuan-send-windows |
26.09.2026 |
|
| CVE-2026-100635 |
SiYuan before v3.8.4 Authentication Bypass via Plaintext Session Cookie |
26.09.2026 |
|
| CVE-2026-100636 |
SiYuan before v3.8.4 Path Traversal via exportBrowserHTML folder |
26.09.2026 |
|
| CVE-2026-100637 |
SiYuan before v3.8.4 Path Traversal via checkoutRepo sessionID |
26.09.2026 |
|
| CVE-2026-100638 |
SiYuan before v3.8.4 Path Traversal via setNotebookIcon |
26.09.2026 |
|
| CVE-2026-100639 |
SiYuan before v3.8.4 Cross-Site Scripting via Kramdown IAL |
26.09.2026 |
|
| CVE-2026-100640 |
SiYuan before v3.8.4 Clipboard Data Disclosure via IPC |
26.09.2026 |
|
| CVE-2026-100641 |
SiYuan before v3.8.4 Stored XSS via Unescaped Flashcard Content |
26.09.2026 |
|
| CVE-2026-100642 |
SiYuan v2.1.0 before v3.8.4 Cross-Site Request Forgery via CheckAuth |
26.09.2026 |
|
| CVE-2026-100643 |
SiYuan before v3.8.4 Stored XSS via Attribute View textarea |
26.09.2026 |
|
| CVE-2026-100644 |
SiYuan before v3.8.4 SQL Injection via dailyNoteSavePath |
26.09.2026 |
|
| CVE-2026-100645 |
SiYuan 3.7.0 before 3.8.4 Stored XSS via Gallery Kanban |
26.09.2026 |
|
| CVE-2026-100646 |
SiYuan before v3.8.4 Authentication Bypass via Missing Origin Header |
26.09.2026 |
|
| CVE-2026-100647 |
vLLM before 0.29.0 CPU Exhaustion via unbounded cache_salt |
26.09.2026 |
|
| CVE-2026-100648 |
vllm before 0.29.0 Uncontrolled Resource Consumption via Audio Decoding |
26.09.2026 |
|
| CVE-2026-100649 |
vLLM before 0.29.0 Resource Limit Bypass via Sampler Subclass |
26.09.2026 |
|
| CVE-2026-100650 |
vLLM before 0.29.0 Resource Exhaustion via Unbounded Media Materialization |
26.09.2026 |
|
| CVE-2026-100651 |
vllm before 0.29.0 Denial of Service via Decoder Prompt Length Bypass |
26.09.2026 |
|
| CVE-2026-100652 |
vLLM 0.22.0 through 0.23.0 Denial of Service via stop_token_ids |
26.09.2026 |
|
| CVE-2026-100653 |
vLLM 0.22.1 before 0.28.0 Incomplete Artifact Pin Propagation |
26.09.2026 |
|
| CVE-2026-100654 |
vLLM before 0.29.0 Denial of Service via out-of-range stop_token_ids |
26.09.2026 |
|
| CVE-2026-100655 |
Netty before 4.1.138.Final Denial of Service via SpdySessionHandler |
26.09.2026 |
|
| CVE-2026-100656 |
Netty HttpServerCodec Unbounded Queue Growth via HTTP/1.1 Pipelining |
26.09.2026 |
|
| CVE-2026-100657 |
Netty before 4.1.138.Final ByteBuf Leak in StompSubframeDecoder |
26.09.2026 |
|
| CVE-2026-100658 |
Netty before 4.1.138.Final Denial of Service via WebSocketServerExtensionHandler |
26.09.2026 |
|
| CVE-2026-100659 |
Netty 4.2.0 through 4.2.18 HTTP/3 Request Routing Bypass |
26.09.2026 |
|
| CVE-2026-100660 |
Netty before 4.2.18.Final QpackEncoder Unbounded Memory Retention |
26.09.2026 |
|
| CVE-2026-100661 |
Netty HTTP/3 QPACK Prefixed Integer DoS via Unbounded Accumulation |
26.09.2026 |
|
| CVE-2026-100662 |
Netty HTTP/3 QPACK encoder-stream unbounded memory exhaustion DoS |
26.09.2026 |
|
| CVE-2026-100663 |
Netty HTTP/1 CONNECT authority-form mistranslated to malformed HTTP/3 |
26.09.2026 |
|
| CVE-2026-100664 |
Netty 4.2.2 through 4.2.15 HTTP/1 Host Header Authority Confusion |
26.09.2026 |
|
| CVE-2026-100665 |
Netty 4.2.11 through 4.2.17 QUIC Hostname Verification Bypass |
26.09.2026 |
|
| CVE-2026-100666 |
Netty 4.2.0 through 4.2.17 Response Desynchronization via HttpServerCodec |
26.09.2026 |
|
| CVE-2026-100667 |
grav-plugin-login 3.8.7 through 3.9.6 Two-Factor Authentication Bypass |
26.09.2026 |
|
| CVE-2026-100668 |
Grav before 2.0.25 Sandbox Escape via array Filter |
26.09.2026 |
|
| CVE-2026-100669 |
Grav before 2.0.25 Sensitive File Disclosure via Case-Variation Bypass |
26.09.2026 |
|
| CVE-2026-100670 |
Grav CMS 2.0.14 through 2.0.24 Privilege Escalation via Blueprint Guard Bypass |
26.09.2026 |
|
| CVE-2026-100671 |
Grav before 2.0.25 Session Cookie Theft via Twig Sandbox |
26.09.2026 |
|
| CVE-2026-100672 |
grav-plugin-comments before 1.2.11 Unauthenticated Information Disclosure |
26.09.2026 |
|
| CVE-2026-100673 |
Grav Data Manager before 1.4.5 Stored XSS via item-detail view |
26.09.2026 |
|
| CVE-2026-100674 |
stoatchat before 0.15.5 Username Validation Bypass via Unicode Sanitization |
26.09.2026 |
|
| CVE-2026-100675 |
stoatchat before 0.15.5 Denial of Service via mass mentions |
26.09.2026 |
|
| CVE-2026-100676 |
stoatchat before 0.15.5 Local Filesystem Read via SVG |
26.09.2026 |
|
| CVE-2026-100677 |
stoatchat before 0.15.5 Account Enumeration via Error Location |
26.09.2026 |
|
| CVE-2026-100678 |
stoatchat before 0.15.5 MFA Brute Force via Insufficient Rate Limiting |
26.09.2026 |
|
| CVE-2026-100679 |
stoatchat before 0.15.5 MFA Bypass via Cross-Account Ticket |
26.09.2026 |
|
| CVE-2026-100680 |
Budibase before 3.45.0 Arbitrary Local File Read via OpenAPI Import |
26.09.2026 |
|
| CVE-2026-100681 |
Budibase before 3.45.0 SSRF and OAuth Token Exfiltration via Teams Webhook |
26.09.2026 |
|
| CVE-2026-100682 |
Budibase Server before 3.45.0 Arbitrary File Write via ZIP Symlink |
26.09.2026 |
|
| CVE-2026-100683 |
Budibase before 3.45.0 SQL Injection via column-rename DDL |
26.09.2026 |
|
| CVE-2026-100684 |
Budibase Server 3.41.0 before 3.45.0 Authentication Bypass via OIDC |
26.09.2026 |
|
| CVE-2026-100685 |
Budibase before 3.45.0 Information Disclosure via Chat Links |
26.09.2026 |
|
| CVE-2026-100686 |
Budibase before 3.45.0 Cross-Workspace Privilege Escalation via POST /api/global/groups/:groupId/apps |
26.09.2026 |
|
| CVE-2026-100687 |
Budibase Server before 3.45.0 Credential Exposure via External Table Broadcast |
26.09.2026 |
|
| CVE-2026-100688 |
Budibase server before 3.45.0 Cross-Tenant Information Disclosure |
26.09.2026 |
|
| CVE-2026-100689 |
GitPython before 3.1.62 Path Traversal via gitmodules path |
26.09.2026 |
|
| CVE-2026-100690 |
Hugo v0.161.0 to v0.165.0 Arbitrary File Read via Symlinks |
26.09.2026 |
|
| CVE-2026-100691 |
Hugo before 0.166.0 Stored XSS via lineAnchors code block option |
26.09.2026 |
|
| CVE-2026-100692 |
Hugo before v0.166.0 Path Traversal via Symlinked Mount Roots |
26.09.2026 |
|
| CVE-2026-100693 |
Hugo v0.162.0 before v0.166.0 IP-literal Deny Rule Bypass |
26.09.2026 |
|
| CVE-2026-100694 |
Hugo before 0.166.0 Cross-Site Scripting via text/org |
26.09.2026 |
|
| CVE-2026-100695 |
Adminer before 6.0.2 XSS via CONNECTION_ID escalating to RCE |
26.09.2026 |
|
| CVE-2026-100696 |
Adminer before 6.0.2 Unauthenticated SSRF via Elasticsearch Driver |
26.09.2026 |
|
| CVE-2026-100697 |
Adminer 6.0.0 Server-Side Request Forgery via ClickHouse driver |
26.09.2026 |
|
| CVE-2026-100698 |
Adminer before 6.0.2 Privileged-Port SSRF via host_port Regex |
26.09.2026 |
|
| CVE-2026-100699 |
Nodemailer before 10.0.9 Malformed Envelope Recipient via RFC 5322 Comment |
26.09.2026 |
|
| CVE-2026-100700 |
nodemailer before 10.0.6 Denial of Service via addressparser |
26.09.2026 |
|
| CVE-2026-100701 |
Nodemailer 5.0.0 through 10.0.1 TLS servername Cache Confusion |
26.09.2026 |
|
| CVE-2026-100702 |
Nodemailer before 10.0.2 Stack Exhaustion via Nested Recipient Arrays |
26.09.2026 |
|
| CVE-2026-100703 |
Kyverno before 1.19.1 Cross-Namespace Data Access via globalcontext.Lib |
26.09.2026 |
|
| CVE-2026-100704 |
Kyverno before 1.19.1 ImageValidatingPolicy Exception Bypass |
26.09.2026 |
|
| CVE-2026-100705 |
Kyverno before 1.19.1 SSRF via legacy apiCall service executor |
26.09.2026 |
|
| CVE-2026-100706 |
kyverno before 1.19.1 Privilege Escalation via Policy apiCall urlPath |
26.09.2026 |
|
| CVE-2026-100707 |
Kyverno before 1.19.1 Namespace Isolation Bypass via Percent-Encoded Path |
26.09.2026 |
|
| CVE-2026-100708 |
Froxlor before 2.3.13 Private Key Disclosure via Certificates API |
26.09.2026 |
|
| CVE-2026-100709 |
Froxlor before 2.3.12 2FA Bypass via Namespace Confusion |
26.09.2026 |
|
| CVE-2026-100710 |
Froxlor before 2.3.12 DKIM Private Key Disclosure via API |
26.09.2026 |
|
| CVE-2026-100711 |
froxlor before 2.3.12 Authentication Bypass via Session Persistence |
26.09.2026 |
|
| CVE-2026-100712 |
froxlor before 2.3.12 Two-Factor Authentication Bypass via CSRF |
26.09.2026 |
|
| CVE-2026-100713 |
Froxlor before 2.3.12 Privilege Escalation via SSH Key Sync |
26.09.2026 |
|
| CVE-2026-100714 |
Froxlor before 2.3.12 Command Injection via letsencryptchallengepath |
26.09.2026 |
|
| CVE-2026-100715 |
Froxlor before 2.3.12 Arbitrary File Deletion via Symlink |
26.09.2026 |
|
| CVE-2026-100716 |
Froxlor before 2.3.12 Privilege Escalation via Symlink |
26.09.2026 |
|
| CVE-2026-100717 |
froxlor before 2.3.12 CRLF Injection via validateUrl userinfo |
26.09.2026 |
|
| CVE-2026-100718 |
Froxlor before 2.3.12 Authentication Bypass via EmailSender.add |
26.09.2026 |
|
| CVE-2026-100719 |
Froxlor before 2.3.12 Credential Disclosure via DirProtections API |
26.09.2026 |
|
| CVE-2026-100720 |
Froxlor before 2.3.12 Stored XSS via SSL certificate issuer |
26.09.2026 |
|
| CVE-2026-100315 |
mathurvishal CloudClassroom-PHP-Project mydetailsfaculty.php sql injection |
26.09.2026 |
|
| CVE-2026-100314 |
mathurvishal CloudClassroom-PHP-Project updatedetailsfromstudent.php sql injection |
26.09.2026 |
|
| CVE-2026-100313 |
mathurvishal CloudClassroom-PHP-Project updatequery.php cross site scripting |
26.09.2026 |
|
| CVE-2026-100312 |
mathurvishal CloudClassroom-PHP-Project updateguest.php sql injection |
26.09.2026 |
|
| CVE-2026-98163 |
cgroup: Avoid iteration of dying tasks with zero refcount |
26.09.2026 |
|
| CVE-2026-100311 |
mathurvishal CloudClassroom-PHP-Project Faculty Video Management managevideos2.php cross site scripting |
26.09.2026 |
|
| CVE-2026-18143 |
Request a Quote for WooCommerce <= 2.9.2 - Unauthenticated Arbitrary File Upload via AJAX Popup Handler |
26.09.2026 |
9.8 |
| CVE-2026-11871 |
Team Showcase Supreme <= 9.2 - Unauthenticated Sensitive Data Disclosure via wpm_6310_team_member_details |
26.09.2026 |
|
| CVE-2026-16591 |
WP Directory Kit < 1.5.8 - Listing Admin+ Stored XSS via Category and Location Title and Icon Fields |
26.09.2026 |
|
| CVE-2026-19708 |
File Manager 7.2.2 - 8.0.4 - Unauthenticated Database Backup Disclosure |
26.09.2026 |
|
| CVE-2026-84095 |
WP Review Slider Pro < 12.7.12 - Subscriber+ Stored XSS via Review Import |
26.09.2026 |
|
| CVE-2026-84096 |
WP Review Slider Pro < 12.7.12 - Subscriber+ Stored XSS via Review Form Fields |
26.09.2026 |
|
| CVE-2026-84097 |
WP Review Slider Pro < 12.7.12 - Subscriber+ SQLi via Stored Template Filter |
26.09.2026 |
|
| CVE-2026-85081 |
Multiple elFinder Plugins - DOM-based XSS via postMessage Origin Bypass |
26.09.2026 |
|
| CVE-2026-89237 |
Bluff Post <= 1.1.1 - Unauthenticated SQLi via 'table_name' and 'column_name' Parameters |
26.09.2026 |
|
| CVE-2026-92411 |
WP Delicious < 1.10.8 - Contributor+ Stored XSS via Recipe Block Tag Name |
26.09.2026 |
|
| CVE-2026-96524 |
MCP Server for WordPress < 1.8.2 - Administrator Account Creation via CSRF |
26.09.2026 |
|
| CVE-2026-96525 |
MCP Server for WordPress < 1.8.2 - Contributor+ Workflow Modification and Deletion via Missing Ownership Check |
26.09.2026 |
|
| CVE-2026-96526 |
MCP Server for WordPress < 1.8.2 - Contributor+ Arbitrary Post Title Disclosure via workflows/run REST Route |
26.09.2026 |
|
| CVE-2026-96531 |
Optimole 4.0.0 - 4.2.12 - Author+ Stored XSS via Video Player Block |
26.09.2026 |
|
| CVE-2026-96532 |
Testimonials Widget <= 4.0.4 - Unauthenticated Arbitrary Post Update |
26.09.2026 |
|
| CVE-2026-96533 |
Testimonials Widget <= 4.0.4 - Unauthenticated SSRF via Featured Image URL |
26.09.2026 |
|
| CVE-2026-15273 |
Automatic.css 4.0.0 - Unauthenticated Stored Cross-Site Scripting via REQUEST_URI |
26.09.2026 |
6.4 |
| CVE-2026-100525 |
OpenClaw diagnostics-prometheus before 2026.9.3 Authentication Bypass |
26.09.2026 |
|
| CVE-2026-100526 |
Vulnerability in discord |
26.09.2026 |
|
| CVE-2026-100527 |
OpenClaw before 2026.8.2 Denial of Service via Browser Relay |
26.09.2026 |
|
| CVE-2026-100528 |
OpenClaw before 2026.8.1 Credential Disclosure via Provider Endpoint |
26.09.2026 |
|
| CVE-2026-100529 |
OpenClaw before 2026.8.1 Authorization Scope Widening via File-Transfer |
26.09.2026 |
|
| CVE-2026-100530 |
OpenClaw before 2026.8.1 Exec Approval Directory Binding |
26.09.2026 |
|
| CVE-2026-100531 |
openclaw Slack before 2026.8.1 Authorization Bypass |
26.09.2026 |
|
| CVE-2026-100532 |
openclaw WhatsApp before 2026.8.1 Authentication Bypass |
26.09.2026 |
|
| CVE-2026-100533 |
OpenClaw before 2026.8.1 Path Traversal via Unicode Fallback |
26.09.2026 |
|
| CVE-2026-100534 |
OpenClaw before 2026.8.1 Session Cancellation Authorization Bypass |
26.09.2026 |
|
| CVE-2026-100535 |
OpenClaw before 2026.8.1 Privilege Escalation via Session Memory |
26.09.2026 |
|
| CVE-2026-100536 |
OpenClaw before 2026.8.1 Path Traversal via Structured Attachments |
26.09.2026 |
|
| CVE-2026-100537 |
OpenClaw before 2026.8.1 Authentication Bypass via Active Memory |
26.09.2026 |
|
| CVE-2026-100538 |
OpenClaw before 2026.8.1 Local File Read via Outbound Attachments |
26.09.2026 |
|
| CVE-2026-100539 |
OpenClaw before 2026.8.1 Memory Access Control Bypass |
26.09.2026 |
|
| CVE-2026-100540 |
OpenClaw Feishu before 2026.8.1 Authentication Bypass via Disabled Account |
26.09.2026 |
|
| CVE-2026-100541 |
OpenClaw Matrix before 2026.8.1 Authorization Bypass via Case Folding |
26.09.2026 |
|
| CVE-2026-100542 |
OpenClaw before 2026.8.1 Extraction Limit Bypass via tar.bz2 |
26.09.2026 |
|
| CVE-2026-100543 |
OpenClaw before 2026.8.1 Information Disclosure via Configuration Hash |
26.09.2026 |
|
| CVE-2026-100544 |
openclaw voice-call before 2026.8.1 Authorization Bypass |
26.09.2026 |
|
| CVE-2026-100545 |
OpenClaw before 2026.8.1 Policy Bypass via Session Filename Generation |
26.09.2026 |
|
| CVE-2026-100546 |
OpenClaw 2026.7.2 before 2026.9.2 Authentication Bypass via Voice Transcript |
26.09.2026 |
|
| CVE-2026-100547 |
OpenClaw before 2026.8.1 Authentication Bypass via File URL |
26.09.2026 |
|
| CVE-2026-100548 |
OpenClaw before 2026.8.1 Credential Exposure via Embedding Fallback |
26.09.2026 |
|
| CVE-2026-100549 |
OpenClaw before 2026.8.1 Path Traversal via QQBot voice filenames |
26.09.2026 |
|
| CVE-2026-100550 |
OpenClaw before 2026.8.1 Authentication Bypass via Access Group |
26.09.2026 |
|
| CVE-2026-100551 |
OpenClaw iOS Control UI TLS Pin Enforcement Bypass |
26.09.2026 |
|
| CVE-2026-100552 |
OpenClaw before 2026.8.1 Policy Bypass via Native Tools |
26.09.2026 |
|
| CVE-2026-100553 |
OpenClaw 2026.6.9 before 2026.8.1 Cross-Context Policy Bypass via Feishu unpin |
26.09.2026 |
|
| CVE-2026-100554 |
OpenClaw before 2026.8.1 Canvas Capability Revocation Bypass |
26.09.2026 |
|
| CVE-2026-100555 |
OpenClaw before 2026.8.1 DNS Rebinding via attachment delivery |
26.09.2026 |
|
| CVE-2026-100556 |
OpenClaw before 2026.8.1 Authentication Bypass via Session Reset |
26.09.2026 |
|
| CVE-2026-100557 |
OpenClaw before 2026.8.1 Authorization Bypass via Skill Tool Dispatch |
26.09.2026 |
|
| CVE-2026-100558 |
OpenClaw before 2026.8.1 Resource Exhaustion via WebSocket Upgrade |
26.09.2026 |
|
| CVE-2026-100559 |
OpenClaw before 2026.8.1 Command Injection via Escaped Newlines |
26.09.2026 |
|
| CVE-2026-100560 |
OpenClaw before 2026.8.1 Reusable Exec Approvals Authorization Bypass |
26.09.2026 |
|
| CVE-2026-100561 |
OpenClaw before 2026.8.1 Authentication Bypass via Exec Wrapper |
26.09.2026 |
|
| CVE-2026-100562 |
OpenClaw before 2026.8.1 Authorization Bypass via sessions.create |
26.09.2026 |
|
| CVE-2026-100563 |
OpenClaw before 2026.8.1 CSV Formula Injection via Session Labels |
26.09.2026 |
|
| CVE-2026-100564 |
OpenClaw before 2026.8.1 CSV Formula Injection via Attendance Export |
26.09.2026 |
|
| CVE-2026-100566 |
OpenClaw LINE before 2026.8.1 Access Control Inheritance |
26.09.2026 |
|
| CVE-2026-100567 |
OpenClaw before 2026.8.1 DNS Rebinding via CDP Hostname |
26.09.2026 |
|
| CVE-2026-100568 |
OpenClaw before 2026.8.1 Unauthorized Command Job Access |
26.09.2026 |
|
| CVE-2026-100569 |
OpenClaw before 2026.8.1 Credential Exposure via Endpoint Override |
26.09.2026 |
|
| CVE-2026-100570 |
OpenClaw before 2026.8.1 Remote Code Execution via CLOUDSDK_PYTHON_ARGS |
26.09.2026 |
|
| CVE-2026-100571 |
OpenClaw before 2026.8.1 SMS Webhook Rate Limit Bypass |
26.09.2026 |
|
| CVE-2026-100572 |
OpenClaw before 2026.8.1 Denial of Service via Rate Limit |
26.09.2026 |
|
| CVE-2026-100573 |
OpenClaw before 2026.8.1 Sandbox Policy Bypass via MCP Loopback |
26.09.2026 |
|
| CVE-2026-100574 |
OpenClaw before 2026.8.1 SSRF via Trusted-Host DNS |
26.09.2026 |
|
| CVE-2026-100575 |
OpenClaw Slack before 2026.8.1 Authentication Bypass via Group DM |
26.09.2026 |
|
| CVE-2026-100576 |
OpenClaw before 2026.8.1 SSRF via Browser Wait Predicates |
26.09.2026 |
|
| CVE-2026-100577 |
OpenClaw before 2026.8.1 Server-Side Request Forgery via Video Asset |
26.09.2026 |
|
| CVE-2026-100578 |
OpenClaw before 2026.7.1 Authorization Bypass via chat.send |
26.09.2026 |
|
| CVE-2026-100579 |
OpenClaw before 2026.7.1 Authentication Bypass via Spoofed Requester |
26.09.2026 |
|
| CVE-2026-100580 |
OpenClaw before 2026.7.1 Remote Code Execution via cron tool |
26.09.2026 |
|
| CVE-2026-100581 |
OpenClaw iOS before 2026.8.11 Credential Storage via Share Extension |
26.09.2026 |
|
| CVE-2026-100582 |
OpenClaw Channel Plugins before 2026.8.1 Channel Read Allowlist Bypass |
26.09.2026 |
|
| CVE-2026-100583 |
OpenClaw Discord before 2026.7.1 Authorization Bypass |
26.09.2026 |
|
| CVE-2026-100584 |
OpenClaw before 2026.7.1 Allowlist Bypass via Workspace Shadows |
26.09.2026 |
|
| CVE-2026-100585 |
OpenClaw before 2026.7.1 Authentication Bypass via MCP Channel |
26.09.2026 |
|
| CVE-2026-100586 |
OpenClaw Codex before 2026.7.1 Authorization Bypass via Bind |
26.09.2026 |
|
| CVE-2026-100587 |
OpenClaw before 2026.7.1 Authorization Bypass via Codex Install |
26.09.2026 |
|
| CVE-2026-100588 |
OpenClaw before 2026.7.1 Authentication Bypass via node.invoke |
26.09.2026 |
|
| CVE-2026-100589 |
OpenClaw before 2026.7.1 Sandbox Bypass via Browser Node |
26.09.2026 |
|
| CVE-2026-100590 |
OpenClaw before 2026.7.1 Authorization Bypass via voice set |
26.09.2026 |
|
| CVE-2026-100591 |
OpenClaw before 2026.7.1 Authentication Bypass via Active Memory |
26.09.2026 |
|
| CVE-2026-100592 |
OpenClaw before 2026.7.1 Authentication Bypass via Memory Dreaming |
26.09.2026 |
|
| CVE-2026-100593 |
OpenClaw before 2026.7.1 Authentication Bypass via activation |
26.09.2026 |
|
| CVE-2026-100594 |
OpenClaw before 2026.7.1 Authorization Bypass via trajectory export |
26.09.2026 |
|
| CVE-2026-100595 |
OpenClaw before 2026.7.1 Authorization Bypass via diagnostics |
26.09.2026 |
|
| CVE-2026-100596 |
OpenClaw before 2026.7.1 Authorization Bypass via MCP Configuration |
26.09.2026 |
|
| CVE-2026-100597 |
OpenClaw before 2026.7.1 Path Traversal via Filesystem Race |
26.09.2026 |
|
| CVE-2026-100598 |
OpenClaw before 2026.7.1 Approval Binding Logic Error |
26.09.2026 |
|
| CVE-2026-100599 |
OpenClaw 2026.5.1 before 2026.7.1 Remote Code Execution via googlemeet.chrome |
26.09.2026 |
|
| CVE-2026-100503 |
Ghidra through 12.1.4 Heap Use-After-Free in Decompiler |
26.09.2026 |
|
| CVE-2026-100504 |
Ghidra through 12.1.4 Stack-based Buffer Overflow via leftshift128 |
26.09.2026 |
|
| CVE-2026-100505 |
Ghidra 11.2 through 12.1.4 Heap Out-of-Bounds Read via StringManager |
26.09.2026 |
|
| CVE-2026-100520 |
Laranode before 1.2.1 Path Traversal in File Manager Upload Endpoint |
26.09.2026 |
|
| CVE-2026-100521 |
Cotonti through 1.0.0 Reflected XSS via search highlight parameter |
26.09.2026 |
|
| CVE-2026-100522 |
Cotonti through 1.0.0 Reflected XSS via message.php lng parameter |
26.09.2026 |
|
| CVE-2026-100523 |
Cotonti through 1.0.0 Open Redirect via message.php redirect parameter |
26.09.2026 |
|
| CVE-2026-100524 |
Cotonti through 1.0.0 Cross-Site Request Forgery via Extensions Manager |
26.09.2026 |
|
| CVE-2026-57449 |
Actual Sync Server: CORS Proxy GitHub API Allowlist Prefix Bypass Leaks Private Repositories Through the Server GitHub Token |
25.09.2026 |
|
| CVE-2026-86066 |
Horilla attendance approval endpoint is vulnerable to cross-site request forgery |
25.09.2026 |
|
| CVE-2026-96795 |
Horilla: Authenticated RCE in Horilla List-View Export |
25.09.2026 |
8.8 |
| CVE-2026-100418 |
Flame through 2.4.0 Information Exposure via GET /api/config |
25.09.2026 |
|
| CVE-2026-100419 |
gitoxide gix-fs before 0.23.0 Worktree Escape via Symlink |
25.09.2026 |
|
| CVE-2026-100501 |
Flame through 2.4.0 Brute-Force Attack via Login Endpoint |
25.09.2026 |
|
| CVE-2026-100502 |
Flame through 2.4.0 Admin Token Insufficient Session Expiration |
25.09.2026 |
|
| CVE-2026-63432 |
Horilla: Server-Side Template Injection (SSTI) in Mail Preview Endpoints Allows Authenticated Users to Disclose Password Hashes and Server Metadata |
25.09.2026 |
6.5 |
| CVE-2026-71483 |
Horilla: Reflected Cross-Site Scripting (XSS) in Employee Filter View |
25.09.2026 |
|
| CVE-2026-63431 |
Horilla: Missing Authorization on Payroll Component Views Exposes Employee Salary Structures and Personal Loan Records (IDOR) |
25.09.2026 |
6.5 |