Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Incomplete List of Disallowed Inputs
CVE-2026-43584
Affects
openclaw
| Versions
<2026.4.10
H
DNS Rebinding
CVE-2026-43582
Affects
openclaw
| Versions
<2026.4.10
H
Missing Authorization
CVE-2026-43571
Affects
openclaw
| Versions
<2026.4.10
L
Incorrect Authorization
CVE-2026-43567
Affects
openclaw
| Versions
<2026.4.10
H
Incorrect Authorization
CVE-2026-43535
Affects
openclaw
| Versions
<2026.4.14-beta.1
L
Missing Authorization
CVE-2026-43583
Affects
openclaw
| Versions
>=2026.4.10 <2026.4.14-beta.1
M
External Control of System or Configuration Setting
CVE-2026-43531
Affects
openclaw
| Versions
<2026.4.9-beta.1
H
Missing Authorization
CVE-2026-43574
Affects
openclaw
| Versions
<2026.4.12
C
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2026-43534
Affects
openclaw
| Versions
<2026.4.10
M
Binding to an Unrestricted IP Address
CVE-2026-43581
Affects
openclaw
| Versions
<2026.4.10
H
Missing Authentication for Critical Function
CVE-2026-43575
Affects
openclaw
| Versions
>=2026.2.21 <2026.4.10
M
Incorrect Authorization
CVE-2026-43579
Affects
openclaw
| Versions
<2026.4.10
M
Incorrect Authorization
CVE-2026-43579
Affects
@openclaw/nostr
| Versions
<2026.5.2
H
Directory Traversal
CVE-2026-43533
Affects
openclaw
| Versions
<2026.4.10
H
Incorrect Authorization
CVE-2026-43568
Affects
openclaw
| Versions
>=2026.4.5 <2026.4.10
M
Directory Traversal
CVE-2026-43532
Affects
openclaw
| Versions
>=2026.4.7 <2026.4.10
M
Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-43578
Affects
openclaw
| Versions
>=2026.3.31 <2026.4.10
H
Use of a Key Past its Expiration Date
CVE-2026-43585
Affects
openclaw
| Versions
<2026.4.15-beta.1
M
Incorrect Authorization
CVE-2026-42438
Affects
openclaw
| Versions
>=2026.4.9 <2026.4.10
C
Insecure Default Initialization of Resource
CVE-2026-44109
Affects
@openclaw/feishu
| Versions
>=2026.3.12 <2026.5.2
H
External Control of File Name or Path
CVE-2026-41389
Affects
openclaw
| Versions
>=2026.4.7-1 <2026.4.15-beta.1
H
Incorrect Authorization
CVE-2026-42434
Affects
openclaw
| Versions
>=2026.4.5 <2026.4.10
M
Incorrect Authorization
CVE-2026-43566
Affects
openclaw
| Versions
>=2026.4.7-1 <2026.4.14-beta.1
M
Use of a Broken or Risky Cryptographic Algorithm
Affects
flowise-components
| Versions
<3.1.0
M
Use of a Broken or Risky Cryptographic Algorithm
Affects
flowise-ui
| Versions
<3.1.0
M
Use of a Broken or Risky Cryptographic Algorithm
Affects
flowise
| Versions
<3.1.0
C
Arbitrary Code Injection
CVE-2026-41137
Affects
flowise
| Versions
<3.1.0
C
Arbitrary Code Injection
CVE-2026-41137
Affects
flowise-components
| Versions
<3.1.0
C
Arbitrary Code Injection
CVE-2026-41137
Affects
flowise-ui
| Versions
<3.1.0
H
Server-side Request Forgery (SSRF)
CVE-2026-41272
Affects
flowise-components
| Versions
<3.1.0