Vulnerability index

Browse CVEs

2,810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Server-Side Request Forgery (SSRF)CWE-918 × clear
Unclassified HIGH 7.3
CVE-2026-16125

A vulnerability was found in zevorn rt-claw up to 0.2.0. The affected element is the function claw_net_get/claw_net_post of the file claw/services/to…

No fix yet
Fix from $1,950 2026-07-18
Surrealdb HIGH 7.6
CVE-2025-71398

SurrealDB before 2.2.2 fails to validate HTTP redirects in http functions, allowing authenticated users to bypass deny-net restrictions by redirectin…

No fix yet
Fix from $1,950 2026-07-18
Unclassified HIGH 7.3
CVE-2026-16084

A weakness has been identified in Sipeed PicoClaw up to 0.2.9. This impacts the function web_fetch of the file pkg/tools/integration/web.go. This man…

No fix yet
Fix from $1,950 2026-07-18
Css Parser HIGH 8.6
CVE-2026-53727

css_parser is a Ruby CSS parser. From 2.2.0 until 3.0.0, CssParser::Parser#read_remote_file in lib/css_parser/parser.rb, and therefore load_uri! and …

Mitigation only
Fix from $1,950 2026-07-17
Unclassified MEDIUM 6.3
CVE-2026-16074

A vulnerability was detected in AstrBotDevs AstrBot up to 4.25.2. This affects the function update_plugin/update_all_plugins of the file astrbot/dash…

No fix yet
Fix from $1,600 2026-07-17
Langflow MEDIUM 6.5
CVE-2026-7754

IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery (SSRF) due to insecure default configuration and incompl…

Fix: 1.10.1+
Fix from $1,600 2026-07-17
Unclassified HIGH 7.5
CVE-2026-51833

Xenforo 2.3.8 is vulnerable to SSRF. Attackers that have administrator privileges or are able to add/save RSS feeds can enumerate internal services (…

No fix yet
Fix from $1,950 2026-07-17
Unclassified HIGH 7.5
CVE-2026-50151

oras-go is a Go library for managing OCI artifacts. Prior to 2.6.1, registry/remote/repository.go in blobStore.completePushAfterInitialPost follows a…

No fix yet
Fix from $1,950 2026-07-17
Unclassified MEDIUM 5.8
CVE-2026-63096

Dendrite through 0.13.8 contains a server-side request forgery vulnerability that allows unauthenticated attackers to cause the server to open outbou…

No fix yet
Fix from $1,600 2026-07-17
Unclassified HIGH 7.3
CVE-2026-16016

A vulnerability was identified in poco-ai poco-claw up to 0.5.4. This issue affects the function run_task of the file executor/app/api/v1/task.py. Th…

No fix yet
Fix from $1,950 2026-07-17
Unclassified HIGH 8.1
CVE-2026-62234

Grav before 2.0.4 fails to restrict cURL protocols in webhook dispatch, allowing authenticated users with api.webhooks.write permission to create web…

No fix yet
Fix from $1,950 2026-07-17
Openclaw HIGH 7.7
CVE-2026-62227

OpenClaw 2026.4.14 before 2026.5.26 contain a server-side request forgery vulnerability in browser snapshot routes that fail to validate post-navigat…

Fix: 2026.5.26+
Fix from $1,950 2026-07-17
Openclaw HIGH 8.5
CVE-2026-62226

OpenClaw 2026.3.28 before 2026.5.19 contain an authorization bypass vulnerability in the browser act route that fails to properly validate current-ta…

Fix: 2026.5.19+
Fix from $1,950 2026-07-17
Openclaw MEDIUM 5.0
CVE-2026-62216

OpenClaw 2026.4.20 before 2026.5.28 contain a policy bypass in the QQBot media upload feature. A lower-trust caller or configured input path could ca…

Fix: 2026.5.28+
Fix from $1,600 2026-07-17
Openclaw HIGH 7.7
CVE-2026-62201

OpenClaw versions before 2026.6.6 contain a network policy bypass vulnerability in the sandbox exec-server that allows lower-trust callers to reach i…

Fix: 2026.6.6+
Fix from $1,950 2026-07-17
Docling Core HIGH 8.6
CVE-2026-44023

Docling Core defines core data types and transformations for the document processing application Docling. In versions 1.5.0 and above, prior to 2.74.…

Fix: 2.74.1+
Fix from $1,950 2026-07-16
Unclassified MEDIUM 6.8
CVE-2026-46404

BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, the presentation URL validation did not properly restrict access to site local an…

No fix yet
Fix from $1,600 2026-07-16
Unclassified HIGH 8.6
CVE-2026-63086

text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compatible multimodal chat completi…

No fix yet
Fix from $1,950 2026-07-16
Unclassified HIGH 8.6
CVE-2026-63088

stoatchat before 0.14.0 contains a server-side request forgery (SSRF) vulnerability that allows unauthenticated network-accessible attackers to bypas…

No fix yet
Fix from $1,950 2026-07-16
Unclassified HIGH 7.1
CVE-2026-59867

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.5, Kiota resolved OpenAPI $ref values by fetching remote http(s) URLs …

No fix yet
Fix from $1,950 2026-07-16
Unclassified HIGH 8.6
CVE-2026-63306

stoatchat before 0.13.5 contains an unauthenticated server-side request forgery vulnerability in the /proxy and /embed endpoints that accept arbitrar…

No fix yet
Fix from $1,950 2026-07-16
Unclassified MEDIUM 6.2
CVE-2026-53446

Wekan is open source kanban built with Meteor. Prior to 9.32, Wekan webhook integration URLs in models/integrations.js are stored from user input and…

Mitigation only
Fix from $1,600 2026-07-15
Unclassified MEDIUM 6.4
CVE-2026-56678

9Router is an AI router & token saver. Prior to 0.5.6, the Kiro API-key validation endpoint POST /api/oauth/kiro/api-key builds an upstream URL using…

Mitigation only
Fix from $1,600 2026-07-15
Unclassified MEDIUM 6.5
CVE-2026-15746

Strands Agents is an open-source Python SDK for building and running AI agents. The strands-agents-tools package provides pre-built tools for use wit…

Mitigation only
Fix from $1,600 2026-07-15
Better Auth\/sso CRITICAL 9.6
CVE-2026-53513

Better Auth is an authentication and authorization library for TypeScript. Prior to 1.6.11, the @better-auth/sso plugin's POST /sso/register and POST…

Fix: 1.6.11+
Fix from $2,300 2026-07-15
Unclassified MEDIUM 5.8
CVE-2026-47160

Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's /icons/{domain}/icon.png endpoint used src/http_client.r…

Mitigation only
Fix from $1,600 2026-07-15
Unclassified HIGH 7.7
CVE-2026-45806

Penpot is an open-source design tool for design and code collaboration. Prior to 2.15.0, Penpot's remote image import passed the user-controlled url …

Mitigation only
Fix from $1,950 2026-07-15
Directus HIGH 7.7
CVE-2026-61835

Directus is a real-time API and App dashboard for managing SQL database content. Prior to 12.0.0, the SSRF protection on Directus's file-import-from-…

Fix: 12.0.0+
Fix from $1,950 2026-07-15
Unclassified MEDIUM 6.3
CVE-2026-61646

FastGPT is a knowledge-based AI application platform. Prior to 4.15.0-beta5, FastGPT's shared SSRF guard validates only the initial request URL befor…

Mitigation only
Fix from $1,600 2026-07-15
Unclassified MEDIUM 6.5
CVE-2026-54562

Cloudreve is a self-hosted file management and sharing system. Prior to 4.16.1, Cloudreve's remote download workflow accepts user-supplied URLs at PO…

Mitigation only
Fix from $1,600 2026-07-15