Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
User Impersonation
Affects
openclaw
| Versions
<2026.2.21
M
Cross-site Scripting (XSS)
CVE-2025-15599
Affects
dompurify
| Versions
<3.2.7
M
Cross-site Scripting (XSS)
CVE-2026-0540
Affects
dompurify
| Versions
<2.5.9
>=3.0.0 <3.3.2
M
Cross-site Scripting (XSS)
Affects
openclaw
| Versions
<2026.2.23-beta.1
H
Arbitrary Code Injection
Affects
openclaw
| Versions
<2026.2.22
H
Incorrect Privilege Assignment
Affects
openclaw
| Versions
<2026.3.2-beta.1
C
Server-side Request Forgery (SSRF)
Affects
openclaw
| Versions
<2026.3.1
M
Incomplete List of Disallowed Inputs
Affects
openclaw
| Versions
<2026.2.23-beta.1
H
Untrusted Search Path
Affects
openclaw
| Versions
<2026.3.1
M
Directory Traversal
CVE-2026-28457
Affects
openclaw
| Versions
<2026.2.12
M
Cross-site Scripting (XSS)
CVE-2025-5092
Affects
lightgallery
| Versions
*
M
Cross-site Scripting (XSS)
Affects
@fluentui/react-charts
| Versions
>=9.0.0 <9.1.10
M
Cross-site Scripting (XSS)
Affects
@fluentui/react-charting
| Versions
>=5.16.10 <5.23.18
H
Uncontrolled Recursion
CVE-2026-27601
Affects
underscore
| Versions
<1.13.8
M
Regular Expression Denial of Service (ReDoS)
Affects
openclaw
| Versions
<2026.2.19
C
Symlink Attack
Affects
openclaw
| Versions
<2026.2.25
M
Incorrect Authorization
Affects
openclaw
| Versions
<2026.2.23
M
Directory Traversal
Affects
openclaw
| Versions
<2026.2.22
L
Improper Authorization
Affects
openclaw
| Versions
<2026.2.22
M
Symlink Attack
Affects
openclaw
| Versions
<2026.2.25
H
Directory Traversal
Affects
openclaw
| Versions
<2026.2.21
H
Server-side Request Forgery (SSRF)
Affects
openclaw
| Versions
<2026.2.22
H
Directory Traversal
CVE-2026-28393
Affects
openclaw
| Versions
<2026.2.14
M
Protection Mechanism Failure
Affects
openclaw
| Versions
<2026.2.24
H
Time-of-check Time-of-use (TOCTOU) Race Condition
Affects
openclaw
| Versions
<2026.2.26
H
Command Injection
Affects
openclaw
| Versions
<2026.2.14
M
Incorrect Authorization
CVE-2026-28466
Affects
openclaw
| Versions
<2026.2.14
H
Incorrect Authorization
Affects
openclaw
| Versions
<2026.2.25
H
Directory Traversal
Affects
openclaw
| Versions
<2026.2.24
M
Allocation of Resources Without Limits or Throttling
Affects
openclaw
| Versions
<2026.2.22