The product implements a protection mechanism that relies on a list of inputs (or properties of inputs) that are not allowed by policy or otherwise require other action to neutralize before additional processing takes place, but the list is incomplete.
122 vulnerabilities with CWE-184
CVE-2026-41361
HIGH
OpenClaw < 2026.3.28 - SSRF Guard Bypass via IPv6 Special-Use Ranges
CVSS 7.1
CVE-2026-41332
MEDIUM
OpenClaw < 2026.3.28 - Code Execution via Missing Environment Variable Blocklist
CVSS 5.3
CVE-2026-41264
CRITICAL
Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability
CVE-2026-41206
HIGH
PySpector <0.1.8 PluginSecurity.validate_plugin_code - Code Execution Bypass
CVSS 7.8
CVE-2026-34415
CRITICAL
Xerte Online Toolkits File Upload RCE via elfinder Connector
CVSS 9.8
CVE-2026-26274
MEDIUM
October: Safe Mode Bypass via Twig Database Write Operations
CVSS 6.6
CVE-2026-26067
MEDIUM
October: Safe Mode Bypass via CSS Preprocessor Compilers
CVSS 4.9
CVE-2026-25525
MEDIUM
OpenMage LTS has Path Traversal Filter Bypass in Dataflow Module
CVSS 4.9
CVE-2026-40077
LOW
Beszel <0.18.7 Hub API - Insecure Direct Object Reference
CVSS 3.5
CVE-2026-39315
MEDIUM
Unhead <2.1.13 hasDangerousProtocol() - Protocol Filter Bypass
CVSS 6.1
CVE-2026-34177
CRITICAL
VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf
CVSS 9.1
CVE-2026-35410
MEDIUM
Directus <11.16.1 OAuth2/SAML Login - Open Redirect
CVSS 6.1
CVE-2026-34426
HIGH
OpenClaw - Approval Bypass via Environment Variable Normalization
CVSS 7.6
CVE-2026-34425
MEDIUM
OpenClaw - Shell-Bleed Protection Preflight Validation Bypass
CVSS 5.4
CVE-2026-35000
MEDIUM
ChangeDetection.io < 0.54.7 SafeXPath3Parser Bypass Arbitrary File Read
CVSS 6.5
CVE-2026-34430
HIGH
ByteDance DeerFlow LocalSandboxProvider Host Bash Escape
CVSS 8.8
CVE-2026-33628
MEDIUM
Invoice Ninja Denylist Bypass may Lead to Stored XSS via Invoice Line Items
CVSS 5.4
CVE-2026-33396
CRITICAL
OneUptime has sandbox escape in Synthetic Monitor Playwright runtime allows project members to execute arbitrary commands on Probe
CVSS 9.9
CVE-2026-4509
MEDIUM
PbootCMS File Upload file.php incomplete blacklist
CVSS 6.3
CVE-2026-33139
HIGH
PySpector: Plugin Sandbox Bypass leads to Arbitrary Code Execution
CVSS 7.8
CVE-2026-32940
CRITICAL
SiYuan <3.6.1 getDynamicIcon - Cross-Site Scripting
CVSS 9.3
CVE-2026-32022
MEDIUM
OpenClaw < 2026.2.21 - Arbitrary File Read via grep -e Flag Policy Bypass
CVSS 6.5
CVE-2026-32017
HIGH
OpenClaw < 2026.2.19 - Arbitrary File Write via Short-Option Bypass in exec Allowlist
CVSS 7.1
CVE-2026-32747
MEDIUM
SiYuan: Incomplete sensitive path blocklist in globalCopyFiles allows reading /proc and Docker secrets
CVSS 6.8
CVE-2026-31993
MEDIUM
OpenClaw < 2026.2.22 - Allowlist Parsing Mismatch in system.run Shell Chains
CVSS 4.8
Details
Vulnerabilities
122