8.5

CVSS4.0

CVE-2026-41295 - OpenClaw < 2026.4.2 - Untrusted Workspace Channel Shadow Code Execution during Built-in Channel Set…

OpenClaw before 2026.4.2 contains an improper trust boundary vulnerability allowing untrusted workspace channel shadows to execute during built-in channel setup and login. Attackers can clone a workspace with a malicious plugin claiming a bundled channel id to achieve unintended in-process code exe…

📅 Published: April 20, 2026, 11:08 p.m. 🔄 Last Modified: April 21, 2026, 4:20 p.m.

8.5

CVSS4.0

CVE-2026-41294 - OpenClaw < 2026.3.28 - Environment Variable Injection via CWD .env File

OpenClaw before 2026.3.28 loads the current working directory .env file before trusted state-dir configuration, allowing environment variable injection. Attackers can place a malicious .env file in a repository or workspace to override runtime configuration and security-sensitive environment settin…

📅 Published: April 20, 2026, 11:08 p.m. 🔄 Last Modified: April 21, 2026, 4:20 p.m.

5.9

CVSS4.0

CVE-2026-40045 - OpenClaw < 2026.4.2 - Cleartext Credential Transmission via Unencrypted WebSocket Gateway Endpoints

OpenClaw before 2026.4.2 accepts non-loopback cleartext ws:// gateway endpoints and transmits stored gateway credentials over unencrypted connections. Attackers can forge discovery results or craft setup codes to redirect clients to malicious endpoints, disclosing plaintext gateway credentials.

📅 Published: April 20, 2026, 11:08 p.m. 🔄 Last Modified: April 24, 2026, 7:03 p.m.

5.3

CVSS4.0

CVE-2026-34082 - Dify has IDOR in deleting someone else's chat conversation

Dify is an open-source LLM app development platform. Prior to 1.13.1, the method `DELETE /console/api/installed-apps/<appId>/conversations/<conversationId>` has poor authorization checking and allows any Dify-authenticated user to delete someone else's chat history. Version 1.13.1 patches the issue.

📅 Published: April 20, 2026, 11:03 p.m. 🔄 Last Modified: April 23, 2026, 3:12 p.m.

4.7

CVSS3.1

CVE-2026-5721 - wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin <= 6.5.0.4 - Unauthentica…

The wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 6.5.0.4. This is due to insufficient input sanitization and output escaping in the prepareCellOutput() method of the …

📅 Published: April 20, 2026, 10:25 p.m. 🔄 Last Modified: April 22, 2026, 8:22 p.m.

5.3

CVSS4.0

CVE-2026-6729 - HKUDS OpenHarness Session Key Collision Privilege Escalation

HKUDS OpenHarness prior to PR #159 remediation contains a session key derivation vulnerability that allows authenticated participants in shared chats or threads to hijack other users' sessions by exploiting a shared ohmo session key that lacks sender identity verification. Attackers can reuse anoth…

📅 Published: April 20, 2026, 10:01 p.m. 🔄 Last Modified: April 24, 2026, 7:14 p.m.

2.3

CVSS4.0

CVE-2026-0930 - Potential wolfSSHd Buffer out-of-bounds Read on Windows Handling Terminal Resize

Potential read out of bounds case with wolfSSHd on Windows while handling a terminal resize request. An authenticated user could trigger the out of bounds read after establishing a connection which would leak the adjacent stack memory to the pseudo-console output.

📅 Published: April 20, 2026, 9:28 p.m. 🔄 Last Modified: April 24, 2026, 7:15 p.m.

2.3

CVSS4.0

CVE-2026-22051 - Authenticated Low‑Privilege Information Disclosure via Unrestricted Metrics Queries in NetApp Stora…

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9.0.13 and 12.0.0.6 are susceptible to a Information Disclosure vulnerability. Successful exploit could allow an authenticated attacker with low privileges to run arbitrary metrics queries, revealing metric results that they do not ha…

📅 Published: April 20, 2026, 9:27 p.m. 🔄 Last Modified: April 22, 2026, 11:47 a.m.

9.8

CVSS3.1

CVE-2026-5450 - scanf %mc off-by-one heap buffer overflow

Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version 2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in a one byte heap buffer overflow.

📅 Published: April 20, 2026, 8:55 p.m. 🔄 Last Modified: April 23, 2026, 3:33 p.m.

7.5

CVSS3.1

CVE-2026-5928 - Potential buffer under-read in ungetwc

Calling the ungetwc function on a FILE stream with wide characters encoded in a character set that has overlaps between its single byte and multi-byte character encodings, in the GNU C Library version 2.43 or earlier, may result in an attempt to read bytes before an allocated buffer, potentially re…

📅 Published: April 20, 2026, 8:37 p.m. 🔄 Last Modified: April 30, 2026, 3:43 p.m.
Total resulsts: 347355
Page 199 of 34,736
« previous page » next page
Filters