Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
OpenClaw < 2026.3.28 - Client Identity Spoofing in chat.send Gateway Provenance Guard
UEFI Secure Boot Security Feature Bypass Vulnerability
SpotFTP Password Recover 2.4.2 Denial of Service via Name Field
OpenClaw < 2026.3.22 - Webhook Reply Rebinding via Username Resolution in Synology Chat
OpenClaw < 2026.3.22 - Identity Spoofing via rawInput Tool in ACP Permission Resolution
OpenClaw < 2026.3.22 - Policy Confusion via Room Name Collision in Nextcloud Talk
OpenClaw < 2026.3.25 - Authorization Bypass via Group Policy Rebinding with Mutable Space displayName
Contemporary Controls BASC 20T Reliance on Untrusted Inputs in a Security Decision
GINA Domain Switch
OpenClaw < 2026.3.12 - Weak Authorization via Mutable Group Names in Zalouser Allowlist
Pixel Studio 2.17 Denial of Service via Malformed Input
ASPRunner.NET 10.1 Denial of Service via Table Name Field
Pidgin 2.13.0 Denial of Service via Malformed Username
OpenClaw < 2026.2.23 - ACP Permission Auto-Approval Bypass via Untrusted Tool Metadata
OpenClaw < 2026.2.25 - Authentication Bypass via Control UI client.id Parameter
Vikunja has Rate-Limit Bypass for Unauthenticated Users via Spoofed Headers
Claude Code has a Workspace Trust Dialog Bypass via Repo-Controlled Settings File
Plex-configured Seerr instances vulnerable to unauthenticated account registration via Jellyfin authentication endpoint
Microsoft Word Security Feature Bypass Vulnerability
Cube privilege escalation via a specially crafted request
Showing 1 - 20 of 1,000+ results