Category: NVD
-
CVE-2026-34839 – Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, …
Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, the Glances web server exposes a REST API …
-
CVE-2026-35570 – OpenClaude is an open-source coding-agent command line interface for cloud and local …
OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Versions prior to 0.5.1 have a logic …
-
CVE-2026-35587 – Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, …
Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, a Server-Side Request Forgery (SSRF) vulnerability …
-
CVE-2026-35588 – Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, …
Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, the Cassandra export module …
-
CVE-2026-40045 – OpenClaw before 2026.4.2 accepts non-loopback cleartext ws:// gateway endpoints and …
OpenClaw before 2026.4.2 accepts non-loopback cleartext ws:// gateway endpoints and transmits stored gateway credentials over unencrypted …
-
CVE-2026-41285 – In OpenBSD through 7.8, the slaacd and rad daemons have an infinite loop when they …
In OpenBSD through 7.8, the slaacd and rad daemons have an infinite loop when they receive a crafted ICMPv6 Neighbor Discovery (ND) option …
-
CVE-2026-41294 – OpenClaw before 2026.3.28 loads the current working directory .env file before trusted …
OpenClaw before 2026.3.28 loads the current working directory .env file before trusted state-dir configuration, allowing environment …
-
CVE-2026-41295 – OpenClaw before 2026.4.2 contains an improper trust boundary vulnerability allowing …
OpenClaw before 2026.4.2 contains an improper trust boundary vulnerability allowing untrusted workspace channel shadows to execute during …
-
CVE-2026-41296 – OpenClaw before 2026.3.31 contains a time-of-check-time-of-use race condition in the …
OpenClaw before 2026.3.31 contains a time-of-check-time-of-use race condition in the remote filesystem bridge readFile function that allows …
-
CVE-2026-41297 – OpenClaw before 2026.3.31 contains a server-side request forgery vulnerability in the …
OpenClaw before 2026.3.31 contains a server-side request forgery vulnerability in the marketplace plugin download functionality that allows …
-
CVE-2026-41298 – OpenClaw before 2026.4.2 fails to enforce write scopes on the POST …
OpenClaw before 2026.4.2 fails to enforce write scopes on the POST /sessions/:sessionKey/kill endpoint in identity-bearing HTTP modes. …
-
CVE-2026-41299 – OpenClaw before 2026.3.28 contains an authorization bypass vulnerability in the chat.send …
OpenClaw before 2026.3.28 contains an authorization bypass vulnerability in the chat.send gateway method where ACP-only provenance fields …
●●●
