Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
L
Improper Output Neutralization for Logs
Affects
openclaw
| Versions
<2026.2.13
L
Incorrect Authorization
Affects
openclaw
| Versions
<2026.2.14
L
Arbitrary Code Injection
CVE-2026-24764
Affects
openclaw
| Versions
<2026.2.3
M
Improper Authorization
Affects
openclaw
| Versions
<2026.2.14
M
User Impersonation
Affects
openclaw
| Versions
<2026.2.14
H
Incorrect Authorization
CVE-2026-26328
Affects
openclaw
| Versions
<2026.2.14
M
Insufficiently Protected Credentials
CVE-2026-26326
Affects
openclaw
| Versions
<2026.2.14
M
Missing Authentication for Critical Function
Affects
openclaw
| Versions
<2026.2.12
M
User Impersonation
Affects
@openclaw/matrix
| Versions
<2026.2.2
M
Missing Authentication for Critical Function
Affects
@openclaw/voice-call
| Versions
<2026.2.14
M
Binding to an Unrestricted IP Address
Affects
openclaw
| Versions
<2026.2.12
M
Cross-site Request Forgery (CSRF)
CVE-2026-26317
Affects
openclaw
| Versions
<2026.2.14
H
Origin Validation Error
Affects
openclaw
| Versions
<2026.2.12
H
Directory Traversal
CVE-2026-26329
Affects
openclaw
| Versions
<2026.2.14
H
Authorization Bypass Through User-Controlled Key
Affects
openclaw
| Versions
<2026.2.12
H
Incorrect Authorization
Affects
openclaw
| Versions
<2026.2.2
H
Incorrect Authorization
CVE-2026-26325
Affects
openclaw
| Versions
<2026.2.14
H
Insertion of Sensitive Information Into Sent Data
Affects
openclaw
| Versions
<2026.2.1
H
Insertion of Sensitive Information Into Sent Data
Affects
@openclaw/msteams
| Versions
<2026.2.1
H
Incorrect Authorization
CVE-2026-26316
Affects
@openclaw/bluebubbles
| Versions
<2026.2.12
H
Missing Authentication for Critical Function
CVE-2026-26319
Affects
@openclaw/voice-call
| Versions
<2026.2.14
H
Command Injection
Affects
openclaw
| Versions
<2026.2.2
H
Command Injection
Affects
openclaw
| Versions
<2026.2.2
H
Improper Certificate Validation
CVE-2026-26327
Affects
openclaw
| Versions
<2026.2.14
H
Command Injection
CVE-2026-26323
Affects
openclaw
| Versions
<2026.2.14
H
Directory Traversal
Affects
openclaw
| Versions
<2026.2.14
H
Directory Traversal
Affects
openclaw
| Versions
<2026.2.12
H
Directory Traversal
CVE-2026-26321
Affects
@openclaw/feishu
| Versions
<2026.2.14
H
Allocation of Resources Without Limits or Throttling
Affects
openclaw
| Versions
<2026.2.14
C
Authentication Bypass Using an Alternate Path or Channel
Affects
@openclaw/zalo
| Versions
<2026.2.13