CWE-668
Exposure of Resource to Wrong Sphere
The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.
732 vulnerabilities with CWE-668
CVE-2026-34095
MEDIUM
action=raw with Special:Mypage subpage title responds with "Content-Type: text/html" on ctype=text/javascript request
CVSS 6.1
CVE-2026-34094
LOW
Customized help link for page protection indicator is relative to subpage name, because the link target is missing the "/wiki/" prefix
CVSS 3.8
CVE-2026-44338
HIGH
PraisonAI ships and generates a legacy API server with authentication disabled by default, allowing unauthenticated workflow execution
CVSS 7.3
CVE-2026-41369
MEDIUM
OpenClaw < 2026.3.31 - Insufficient Environment Variable Sanitization in Host Execution
CVSS 6.5
CVE-2026-41368
MEDIUM
OpenClaw < 2026.3.28 - Environment Variable Disclosure via jq $ENV Filter Bypass
CVSS 6.5
CVE-2026-41362
MEDIUM
OpenClaw 2026.2.19 < 2026.3.31 - Webhook Replay Dedupe Cache Event Suppression via Shared Authentication
CVSS 4.3
CVE-2026-6830
LOW
Nesquena Hermes WebUI Environment Variable Credential Leakage via Profile Switch
CVSS 3.3
CVE-2026-32690
LOW
Apache Airflow: 3.x - Nested Variable Secret Values Bypass Redaction via max_depth=1
CVSS 3.7
CVE-2026-30912
HIGH
Apache Airflow: Exposing stack trace in case of constraint error
CVSS 7.5
CVE-2026-35658
MEDIUM
OpenClaw < 2026.3.2 - Filesystem Boundary Bypass in Image Tool
CVSS 6.5
CVE-2026-39911
HIGH
Hashgraph Guardian 3.5.0 Unsandboxed JavaScript Execution RCE
CVSS 8.8
CVE-2026-34538
MEDIUM
Apache Airflow: Authorization bypass in DagRun wait endpoint (XCom exposure)
CVSS 6.5
CVE-2026-34765
MEDIUM
Electron named window.open targets not scoped to the opener's browsing context
CVSS 6.0
CVE-2026-34217
HIGH
SandboxJS <0.8.36 New Handler - Scope Object Leak
CVSS 7.2
CVE-2026-34780
HIGH
Electron: Context Isolation bypass via contextBridge VideoFrame transfer
CVSS 8.3
CVE-2026-20160
CRITICAL
Cisco Smart Software Manager On-Prem Arbitrary Command Execution Vulnerability
CVSS 9.8
CVE-2026-33573
HIGH
OpenClaw < 2026.3.11 - Workspace Boundary Bypass via Agent RPC Parameters
CVSS 8.8
CVE-2026-28779
HIGH
Apache Airflow: Path of session token in cookie does not consider base_url - session hijacking via co-hosted applications
CVSS 7.5
CVE-2026-28806
HIGH
nerves-hub nerves_hub_web - Privilege Escalation
CVSS 8.8
CVE-2026-29093
HIGH
WWBN AVideo <24.0 - Session Hijacking
CVSS 8.1
CVE-2026-2297
MEDIUM
CPython < 3.15.0a7 - Unprotected User Data Exposure via SourcelessFileLoader Import Hook
CVE-2026-27466
HIGH
BigBlueButton < 3.0.22 - Denial of Service via ClamAV Port Exposure
CVSS 7.2
CVE-2026-26057
MEDIUM
Skill Scanner API Server - DoS/File Upload
CVSS 6.5
CVE-2026-21528
MEDIUM
Azure IoT Explorer < 0.15.13 - Unauthenticated Information Disclosure via Unrestricted IP Binding
CVSS 6.5
CVE-2026-25643
CRITICAL
Frigate < 0.16.4 - Remote Command Execution via go2rtc exec Directive
CVSS 9.1
Details
Vulnerabilities
732