openclaw-claude-bridge: sandbox is not effective - `--allowed-tools ""` does
PraisonAI Has SSRF in FileTools.download_file() via Unvalidated URL
PraisonAI Has Sandbox Escape via shell=True and Bypassable Blocklist
PraisonAI: Shell Injection in run_python() via Unescaped $() Substitution
PraisonAI: Python Sandbox Escape via str Subclass startswith() Override in
OpenClaw has Sandbox Media Root Bypass via Unnormalized `mediaUrl` / `fileUrl
@mobilenext/mobile-mcp alllows arbitrary file write via Path Traversal in mobile
CAI find_file Agent Tool has Command Injection Vulnerability Through
PraisonAI: Jobs API exposes agent-execution endpoints with no authentication
LangChain Core has Path Traversal vulnerabilites in legacy `load_prompt
PraisonAI: Arbitrary File Read via `@file:` Mention Path Traversal
Text Prompter – Unlimited chatgpt text prompts for openai tasks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'text_prompter' shortcode in all versions
9router has unauthenticated CRUD on /api/providers and Full API Key
Flowise: Parameter Override Bypass Remote Command Execution
files, which leads to a server side template injection vulnerability within langchaingo, allowing an attacker to insert a statement into a prompt to read the "etc/passwd" file
Open WebUI: Cross-user file disclosure via /api/chat/completions image_url
vLLM Vulnerable to Remote DoS via Special-Token Placeholders
PraisonAI CLI automatically resolves @url mentions in prompt text and