Hinotobi
10 exploits
Active since Apr 2026
AgentFlow Local Web API Content-Type Validation Bypass
CVSS 4.4
radare2 < 6.1.4 Project Notes Path Traversal via Symlink
CVSS 6.6
HKUDS OpenHarness Plugin Management Command Exposure
CVSS 8.8
HKUDS OpenHarness Insecure Default Remote Channel Allowlist
CVSS 8.2
Nesquena Hermes WebUI Environment Variable Credential Leakage via Profile Switch
CVSS 3.3
HKUDS OpenHarness Session Key Collision Privilege Escalation
CVSS 6.3
OpenViking Authentication Bypass via VikingBot OpenAPI
CVSS 9.1
ByteDance DeerFlow Path Traversal and Arbitrary File Write via Bootstrap Mode
CVSS 7.1
OpenHarness Remote Administrative Command Injection via Gateway Handler
CVSS 8.8
OpenHarness Path Traversal Information Disclosure via /memory show
CVSS 6.5