Vulnerability index

Browse CVEs

2,810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Server-Side Request Forgery (SSRF)CWE-918 × clear
HIGH 7.3 CVE-2026-16125 A vulnerability was found in zevorn rt-claw up to 0.2.0. The affected element is the function claw_net_get/claw_net_post of the file claw/services/to… No fix yet Fix from $1,9502026-07-18 HIGH 7.6 CVE-2025-71398 SurrealDB before 2.2.2 fails to validate HTTP redirects in http functions, allowing authenticated users to bypass deny-net restrictions by redirectin… Surrealdb No fix yet Fix from $1,9502026-07-18 HIGH 7.3 CVE-2026-16084 A weakness has been identified in Sipeed PicoClaw up to 0.2.9. This impacts the function web_fetch of the file pkg/tools/integration/web.go. This man… No fix yet Fix from $1,9502026-07-18 HIGH 8.6 CVE-2026-53727 css_parser is a Ruby CSS parser. From 2.2.0 until 3.0.0, CssParser::Parser#read_remote_file in lib/css_parser/parser.rb, and therefore load_uri! and … Css Parser Mitigation only Fix from $1,9502026-07-17 MEDIUM 6.3 CVE-2026-16074 A vulnerability was detected in AstrBotDevs AstrBot up to 4.25.2. This affects the function update_plugin/update_all_plugins of the file astrbot/dash… No fix yet Fix from $1,6002026-07-17 MEDIUM 6.5 CVE-2026-7754 IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery (SSRF) due to insecure default configuration and incompl… Langflow 1.10.1+ Fix from $1,6002026-07-17 HIGH 7.5 CVE-2026-51833 Xenforo 2.3.8 is vulnerable to SSRF. Attackers that have administrator privileges or are able to add/save RSS feeds can enumerate internal services (… No fix yet Fix from $1,9502026-07-17 HIGH 7.5 CVE-2026-50151 oras-go is a Go library for managing OCI artifacts. Prior to 2.6.1, registry/remote/repository.go in blobStore.completePushAfterInitialPost follows a… No fix yet Fix from $1,9502026-07-17 MEDIUM 5.8 CVE-2026-63096 Dendrite through 0.13.8 contains a server-side request forgery vulnerability that allows unauthenticated attackers to cause the server to open outbou… No fix yet Fix from $1,6002026-07-17 HIGH 7.3 CVE-2026-16016 A vulnerability was identified in poco-ai poco-claw up to 0.5.4. This issue affects the function run_task of the file executor/app/api/v1/task.py. Th… No fix yet Fix from $1,9502026-07-17 HIGH 8.1 CVE-2026-62234 Grav before 2.0.4 fails to restrict cURL protocols in webhook dispatch, allowing authenticated users with api.webhooks.write permission to create web… No fix yet Fix from $1,9502026-07-17 HIGH 7.7 CVE-2026-62227 OpenClaw 2026.4.14 before 2026.5.26 contain a server-side request forgery vulnerability in browser snapshot routes that fail to validate post-navigat… Openclaw 2026.5.26+ Fix from $1,9502026-07-17 HIGH 8.5 CVE-2026-62226 OpenClaw 2026.3.28 before 2026.5.19 contain an authorization bypass vulnerability in the browser act route that fails to properly validate current-ta… Openclaw 2026.5.19+ Fix from $1,9502026-07-17 MEDIUM 5.0 CVE-2026-62216 OpenClaw 2026.4.20 before 2026.5.28 contain a policy bypass in the QQBot media upload feature. A lower-trust caller or configured input path could ca… Openclaw 2026.5.28+ Fix from $1,6002026-07-17 HIGH 7.7 CVE-2026-62201 OpenClaw versions before 2026.6.6 contain a network policy bypass vulnerability in the sandbox exec-server that allows lower-trust callers to reach i… Openclaw 2026.6.6+ Fix from $1,9502026-07-17 HIGH 8.6 CVE-2026-44023 Docling Core defines core data types and transformations for the document processing application Docling. In versions 1.5.0 and above, prior to 2.74.… Docling Core 2.74.1+ Fix from $1,9502026-07-16 MEDIUM 6.8 CVE-2026-46404 BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, the presentation URL validation did not properly restrict access to site local an… No fix yet Fix from $1,6002026-07-16 HIGH 8.6 CVE-2026-63086 text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compatible multimodal chat completi… No fix yet Fix from $1,9502026-07-16 HIGH 8.6 CVE-2026-63088 stoatchat before 0.14.0 contains a server-side request forgery (SSRF) vulnerability that allows unauthenticated network-accessible attackers to bypas… No fix yet Fix from $1,9502026-07-16 HIGH 7.1 CVE-2026-59867 Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.5, Kiota resolved OpenAPI $ref values by fetching remote http(s) URLs … No fix yet Fix from $1,9502026-07-16 HIGH 8.6 CVE-2026-63306 stoatchat before 0.13.5 contains an unauthenticated server-side request forgery vulnerability in the /proxy and /embed endpoints that accept arbitrar… No fix yet Fix from $1,9502026-07-16 MEDIUM 6.2 CVE-2026-53446 Wekan is open source kanban built with Meteor. Prior to 9.32, Wekan webhook integration URLs in models/integrations.js are stored from user input and… Mitigation only Fix from $1,6002026-07-15 MEDIUM 6.4 CVE-2026-56678 9Router is an AI router & token saver. Prior to 0.5.6, the Kiro API-key validation endpoint POST /api/oauth/kiro/api-key builds an upstream URL using… Mitigation only Fix from $1,6002026-07-15 MEDIUM 6.5 CVE-2026-15746 Strands Agents is an open-source Python SDK for building and running AI agents. The strands-agents-tools package provides pre-built tools for use wit… Mitigation only Fix from $1,6002026-07-15 CRITICAL 9.6 CVE-2026-53513 Better Auth is an authentication and authorization library for TypeScript. Prior to 1.6.11, the @better-auth/sso plugin's POST /sso/register and POST… Better Auth\/sso 1.6.11+ Fix from $2,3002026-07-15 MEDIUM 5.8 CVE-2026-47160 Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's /icons/{domain}/icon.png endpoint used src/http_client.r… Mitigation only Fix from $1,6002026-07-15 HIGH 7.7 CVE-2026-45806 Penpot is an open-source design tool for design and code collaboration. Prior to 2.15.0, Penpot's remote image import passed the user-controlled url … Mitigation only Fix from $1,9502026-07-15 HIGH 7.7 CVE-2026-61835 Directus is a real-time API and App dashboard for managing SQL database content. Prior to 12.0.0, the SSRF protection on Directus's file-import-from-… Directus 12.0.0+ Fix from $1,9502026-07-15 MEDIUM 6.3 CVE-2026-61646 FastGPT is a knowledge-based AI application platform. Prior to 4.15.0-beta5, FastGPT's shared SSRF guard validates only the initial request URL befor… Mitigation only Fix from $1,6002026-07-15 MEDIUM 6.5 CVE-2026-54562 Cloudreve is a self-hosted file management and sharing system. Prior to 4.16.1, Cloudreve's remote download workflow accepts user-supplied URLs at PO… Mitigation only Fix from $1,6002026-07-15