Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MINI-j82c-q2g5-h46c
  • MinimOS/openclaw
See record for full details 1 hour ago
  • Fix available
MINI-94w4-j6mv-hc3f
  • MinimOS/openclaw
See record for full details 1 hour ago
  • Fix available
MINI-jv3f-xp53-c4rj
  • MinimOS/traefik-2
See record for full details 3 hours ago
  • No fix available
GHSA-xxpw-32hf-q8v9
  • Packagist/wwbn/avideo
AVideo: Unauthenticated PHP session store exposed to host network via published memcached port 4 hours ago
  • No fix available
  • Severity - 8.1 (High)
MINI-3v5j-q44h-vr2h
  • MinimOS/openclaw
See record for full details 5 hours ago
  • Fix available
MINI-2w4c-gmjj-m2w7
  • MinimOS/openclaw
See record for full details 6 hours ago
  • Fix available
GHSA-6rx5-m2rc-hmf7
  • Go/github.com/zitadel/zitadel
  • Go/github.com/zitadel/zitadel/v2
ZITADEL: Stored XSS via Default URI Redirect Leads to Account Takeover 7 hours ago
  • Fix available
  • Severity - 7.7 (High)
GHSA-25rw-g6ff-fmg8
  • Go/github.com/zitadel/zitadel
  • Go/github.com/zitadel/zitadel/v2
ZITADEL: Login V2 UI Policy Bypass Allows Unauthorized Self-Registration and Authentication 7 hours ago
  • Fix available
  • Severity - 8.2 (High)
GHSA-pr34-2v5x-6qjq
  • Go/github.com/zitadel/zitadel
  • Go/github.com/zitadel/zitadel/v2
ZITADEL has 1-Click Account Takeover via XSS in /saml-post Endpoint 7 hours ago
  • Fix available
  • Severity - 9.3 (Critical)
GHSA-6865-qjcf-286f
  • Go/github.com/siyuan-note/siyuan/kernel
SiYuan: Unauthenticated Reflected XSS via SVG Injection in /api/icon/getDynamicIcon Endpoint 8 hours ago
  • Fix available
  • Severity - 9.3 (Critical)
MINI-hqpj-75xf-phrg
  • MinimOS/openclaw
See record for full details 8 hours ago
  • Fix available
MINI-hf34-3cm8-fmf6
  • MinimOS/openclaw
See record for full details 9 hours ago
  • Fix available
MINI-h58g-m9gq-cmv3
  • MinimOS/openclaw
See record for full details 9 hours ago
  • Fix available
MINI-hq8j-xpm3-w48r
  • MinimOS/weaviate-fips-1.30
See record for full details 9 hours ago
  • No fix available
MINI-7r76-pjp5-wc3j
  • Not specified
See record for full details 9 hours ago
  • No fix available
GHSA-jwf4-8wf4-jf2m
  • npm/openclaw
OpenClaw: BlueBubbles (optional plugin) pairing/allowlist mismatch when allowFrom is empty 10 hours ago
  • Fix available
  • Severity - 5.3 (Medium)