Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
LiquidJS: `{% render %}` tag silently bypasses per-render `ownPropertyOnly:true` via `Context.spawn()`
PickleScan - Unsafe Globals Check Bypass via pty.spawn Function
OpenClaw < 2026.5.12 - Argument Pattern Bypass in Exec Allowlist via Linux and macOS
OpenClaw < 2026.5.6 - Skill-Command Dispatch Hook Bypass via Before-Tool-Call Hook Skipping
Qihoo 360 Total Security Nucleus Engine Monitoring Logic RpcStringBindingComposeW protection mechanism
vm2: NodeVM builtin denylist bypass via process and inspector/promises allows host code execution
vm2: NodeVM network builtin exclusions bypass via internal _http_client and _http_server
vm2: Sandbox escape via unblocked cross-realm Symbol.for keys + missing bridge write-trap symbol checks
vm2: Bridge Proxy set trap ignores receiver parameter, enabling host object property injection via prototype chain
KanaDojo < 0.1.18 Sandbox Escape RCE via messages.cjs
Fission Environment CRD podspec passthrough enables hostPID/hostNetwork/privileged pods, node escape
Fission Environment CRD PodSpec Injection Leading to Node Escape and Cluster Takeover
Windows Boot Manager Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
Microsoft Excel Security Feature Bypass Vulnerability
Secure Boot Security Feature Bypass Vulnerability
Secure Boot Security Feature Bypass Vulnerability
Secure Boot Security Feature Bypass Vulnerability
Secure Boot Security Feature Bypass Vulnerability
UEFI Secure Boot Security Feature Bypass Vulnerability
Showing 1 - 20 of 1,000+ results