CWE-668

Exposure of Resource to Wrong Sphere

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.

732 vulnerabilities with CWE-668
CVE-2026-34095 MEDIUM
action=raw with Special:Mypage subpage title responds with "Content-Type: text/html" on ctype=text/javascript request
CVSS 6.1
CVE-2026-34094 LOW
Customized help link for page protection indicator is relative to subpage name, because the link target is missing the "/wiki/" prefix
CVSS 3.8
CVE-2026-44338 HIGH
PraisonAI ships and generates a legacy API server with authentication disabled by default, allowing unauthenticated workflow execution
CVSS 7.3
CVE-2026-41369 MEDIUM
OpenClaw < 2026.3.31 - Insufficient Environment Variable Sanitization in Host Execution
CVSS 6.5
CVE-2026-41368 MEDIUM
OpenClaw < 2026.3.28 - Environment Variable Disclosure via jq $ENV Filter Bypass
CVSS 6.5
CVE-2026-41362 MEDIUM
OpenClaw 2026.2.19 < 2026.3.31 - Webhook Replay Dedupe Cache Event Suppression via Shared Authentication
CVSS 4.3
CVE-2026-6830 LOW
Nesquena Hermes WebUI Environment Variable Credential Leakage via Profile Switch
CVSS 3.3
CVE-2026-32690 LOW
Apache Airflow: 3.x - Nested Variable Secret Values Bypass Redaction via max_depth=1
CVSS 3.7
CVE-2026-30912 HIGH
Apache Airflow: Exposing stack trace in case of constraint error
CVSS 7.5
CVE-2026-35658 MEDIUM
OpenClaw < 2026.3.2 - Filesystem Boundary Bypass in Image Tool
CVSS 6.5
CVE-2026-39911 HIGH
Hashgraph Guardian 3.5.0 Unsandboxed JavaScript Execution RCE
CVSS 8.8
CVE-2026-34538 MEDIUM
Apache Airflow: Authorization bypass in DagRun wait endpoint (XCom exposure)
CVSS 6.5
CVE-2026-34765 MEDIUM
Electron named window.open targets not scoped to the opener's browsing context
CVSS 6.0
CVE-2026-34217 HIGH
SandboxJS <0.8.36 New Handler - Scope Object Leak
CVSS 7.2
CVE-2026-34780 HIGH
Electron: Context Isolation bypass via contextBridge VideoFrame transfer
CVSS 8.3
CVE-2026-20160 CRITICAL
Cisco Smart Software Manager On-Prem Arbitrary Command Execution Vulnerability
CVSS 9.8
CVE-2026-33573 HIGH
OpenClaw < 2026.3.11 - Workspace Boundary Bypass via Agent RPC Parameters
CVSS 8.8
CVE-2026-28779 HIGH
Apache Airflow: Path of session token in cookie does not consider base_url - session hijacking via co-hosted applications
CVSS 7.5
CVE-2026-28806 HIGH
nerves-hub nerves_hub_web - Privilege Escalation
CVSS 8.8
CVE-2026-29093 HIGH
WWBN AVideo <24.0 - Session Hijacking
CVSS 8.1
CVE-2026-2297 MEDIUM
CPython < 3.15.0a7 - Unprotected User Data Exposure via SourcelessFileLoader Import Hook
CVE-2026-27466 HIGH
BigBlueButton < 3.0.22 - Denial of Service via ClamAV Port Exposure
CVSS 7.2
CVE-2026-26057 MEDIUM
Skill Scanner API Server - DoS/File Upload
CVSS 6.5
CVE-2026-21528 MEDIUM
Azure IoT Explorer < 0.15.13 - Unauthenticated Information Disclosure via Unrestricted IP Binding
CVSS 6.5
CVE-2026-25643 CRITICAL
Frigate < 0.16.4 - Remote Command Execution via go2rtc exec Directive
CVSS 9.1
Details
Vulnerabilities 732