CVE MEDIUM CVE-2026-39398

openclaw-claude-bridge: sandbox is not effective - `--allowed-tools ""` does

claude-code View details

PraisonAI Has SSRF in FileTools.download_file() via Unvalidated URL

CVSS 8.6 praisonaiagents View details

PraisonAI Has Sandbox Escape via shell=True and Bypassable Blocklist

CVSS 8.8 praisonai View details

PraisonAI: Shell Injection in run_python() via Unescaped $() Substitution

CVSS 7.8 praisonaiagents View details
CVE CRITICAL CVE-2026-34938

PraisonAI: Python Sandbox Escape via str Subclass startswith() Override in

CVSS 10.0 praisonaiagents View details

OpenClaw has Sandbox Media Root Bypass via Unnormalized `mediaUrl` / `fileUrl

CVSS 7.7 openclaw View details

@mobilenext/mobile-mcp alllows arbitrary file write via Path Traversal in mobile

CVSS 8.1 @mobilenext/mobile-mcp View details
CVE CRITICAL CVE-2026-25130

CAI find_file Agent Tool has Command Injection Vulnerability Through

CVSS 9.7 cai-framework View details

PraisonAI: Jobs API exposes agent-execution endpoints with no authentication

CVSS 9.8 praisonai View details

LangChain Core has Path Traversal vulnerabilites in legacy `load_prompt

CVSS 7.5 langchain-core View details

PraisonAI: Arbitrary File Read via `@file:` Mention Path Traversal

CVSS 7.5 praisonaiagents View details
CVE MEDIUM CVE-2024-11896

Text Prompter – Unlimited chatgpt text prompts for openai tasks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'text_prompter' shortcode in all versions

CVE CRITICAL CVE-2024-34359

llama-cpp-python is the Python bindings for llama.cpp. `llama

9router has unauthenticated CRUD on /api/providers and Full API Key

CVSS 10.0 9router View details

Flowise: Parameter Override Bypass Remote Command Execution

CVSS 7.7 flowise-components View details
CVE CRITICAL CVE-2025-9556

files, which leads to a server side template injection vulnerability within langchaingo, allowing an attacker to insert a statement into a prompt to read the "etc/passwd" file

CVE MEDIUM CVE-2026-54009

Open WebUI: Cross-user file disclosure via /api/chat/completions image_url

CVSS 6.5 open-webui View details
CVE MEDIUM CVE-2026-44222

vLLM Vulnerable to Remote DoS via Special-Token Placeholders

CVSS 6.5 vllm View details

LiteLLM: Server-Side Template Injection in /prompts/test endpoint

CVE MEDIUM CVE-2026-47395

PraisonAI CLI automatically resolves @url mentions in prompt text and

CVSS 5.5 PraisonAI View details
Previous Page 6 of 7 Next