CVE Vulnerability Database

Search and browse 395,018 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-53829HIGH8.5OpenClaw before 2026.5.18 contains an approval display truncation vulnerability allowing authenticated users to hide com...
CVE-2026-53828HIGH8.8OpenClaw before 2026.5.6 contains an authorization bypass vulnerability in native command handling that allows authentic...
CVE-2026-53827MEDIUM6.5OpenClaw before 2026.5.2 contains a credential exposure vulnerability in message.action forwarding that allows model-con...
CVE-2026-53826MEDIUM4.3OpenClaw before 2026.4.26 contains an information disclosure vulnerability in sandboxed session spawning that exposes th...
CVE-2026-53825HIGH7.1OpenClaw before 2026.4.7 contains an arbitrary file read vulnerability in the memory-wiki ingest feature that allows aut...
CVE-2026-53824MEDIUM6.5OpenClaw before 2026.4.24 contains a token revocation vulnerability allowing callers with revoked slash tokens to contin...
CVE-2026-53823HIGH8.6OpenClaw before 2026.5.3 contains a privilege escalation vulnerability in the allowFrom feature that binds to mutable Sl...
CVE-2026-53822HIGH8.8OpenClaw before 2026.5.18 contains a command injection vulnerability where shell wrapper argv could change between appro...
CVE-2026-53821HIGH8.8OpenClaw before 2026.5.18 accepts WebSocket client-declared operator scopes before binding to server-approved pairing or...
CVE-2026-53820MEDIUM6.9OpenClaw before 2026.5.12 contains an exec denylist bypass vulnerability in the bundle MCP loopback session-spawn path t...
CVE-2026-53609CRITICAL9.1ApostropheCMS is an open-source Node.js content management system. In versions up to and including 4.30.0, `apos.util.se...
CVE-2026-53608HIGH8.7ApostropheCMS is an open-source Node.js content management system. Versions up to and including 1.4.2 of the `@apostroph...
CVE-2026-53523MEDIUM6.8Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.0.0 to be...
CVE-2026-53522MEDIUM6.5Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.0.0 to be...
CVE-2026-53521MEDIUM6.4Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 2.0.14 to b...
CVE-2026-53520MEDIUM6.5Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 2.0.14 to b...
CVE-2026-53519CRITICAL9.1Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. Prior to version 2.0.13,...
CVE-2026-49397MEDIUM5.3Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 2.0.0 to be...
CVE-2026-49396HIGH7.1Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.0.0 to be...
CVE-2026-48119HIGH7.1Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 0.20.0 to b...
CVE-2026-47268MEDIUM6.4Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 0.20.0 to b...
CVE-2026-47124MEDIUM6.5Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...
CVE-2026-47120HIGH7.1Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...
CVE-2026-46717HIGH7.7Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...
CVE-2026-46716CRITICAL9.9Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...