13ernkastel
8 exploits
Active since Mar 2026
OpenHarness Permission Bypass via grep and glob root argument
CVSS 7.5
OpenHarness SSRF via web_fetch and web_search
CVSS 8.3
OpenViking < 0.3.3 Missing Authorization via Task Polling
CVSS 5.3
OpenHarness Improper Access Control via File Tools
CVSS 7.1
ByteDance DeerFlow LocalSandboxProvider Host Bash Escape
CVSS 8.8
OpenViking 0.2.5 < 0.2.14 Bot Proxy Endpoints Allow Unauthenticated Access
CVSS 5.3
ByteDance DeerFlow Stored XSS via Inline Artifact Rendering
CVSS 5.4
OpenViking <=0.2.1 - Path Traversal
CVSS 7.8