CWE-693

Protection Mechanism Failure

The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.

668 vulnerabilities with CWE-693
CVE-2026-53853 HIGH
OpenClaw < 2026.5.12 - Argument Pattern Bypass in Exec Allowlist via Linux and macOS
CVSS 8.3
CVE-2026-53845 MEDIUM
OpenClaw < 2026.5.6 - Skill-Command Dispatch Hook Bypass via Before-Tool-Call Hook Skipping
CVSS 4.3
CVE-2026-12316 CRITICAL
Mitigation bypass in the DOM: Security component
CVSS 9.1
CVE-2026-12315 CRITICAL
Mitigation bypass in the DOM: Security component
CVSS 9.1
CVE-2026-12302 MEDIUM
Mitigation bypass in the DOM: Security component
CVSS 6.5
CVE-2026-12296 CRITICAL
Sandbox escape in the Security: Process Sandboxing component
CVSS 9.6
CVE-2026-12295 CRITICAL
Sandbox escape in the DOM: Navigation component
CVSS 9.6
CVE-2026-12294 CRITICAL
Sandbox escape in the DOM: Workers component
CVSS 9.6
CVE-2026-12214 HIGH
Qihoo 360 Total Security Nucleus Engine Monitoring Logic RpcStringBindingComposeW protection mechanism
CVSS 7.8
CVE-2026-47209 HIGH
vm2: Bridge Proxy set trap ignores receiver parameter, enabling host object property injection via prototype chain
CVSS 8.6
CVE-2026-47140 CRITICAL
vm2: NodeVM builtin denylist bypass via process and inspector/promises allows host code execution
CVSS 10.0
CVE-2026-47139 HIGH
vm2: NodeVM network builtin exclusions bypass via internal _http_client and _http_server
CVSS 8.6
CVE-2026-47135 HIGH
vm2: Sandbox escape via unblocked cross-realm Symbol.for keys + missing bridge write-trap symbol checks
CVSS 8.7
CVE-2026-12031 HIGH
Google Chrome < 149.0.7827.115 - Sandbox Escape via Crafted HTML Page
CVSS 8.3
CVE-2026-12027 CRITICAL
Google Chrome < 149.0.7827.115 - Sandbox Escape via Headless Inappropriate Implementation
CVSS 9.6
CVE-2026-48546 HIGH
KanaDojo < 0.1.18 Sandbox Escape RCE via messages.cjs
CVSS 7.3
CVE-2026-50564 CRITICAL
Fission Environment CRD podspec passthrough enables hostPID/hostNetwork/privileged pods, node escape
CVSS 9.9
CVE-2026-50545 CRITICAL
Fission Environment CRD PodSpec Injection Leading to Node Escape and Cluster Takeover
CVSS 9.9
CVE-2026-48575 HIGH
Microsoft Windows 10 Version 1607 - Secure Boot Security Feature Bypass Vulnerability
CVSS 7.9
CVE-2026-48570 HIGH
Microsoft Windows 10 Version 1607 - Secure Boot Security Feature Bypass Vulnerability
CVSS 7.9
CVE-2026-48568 HIGH
Microsoft Windows 10 Version 1607 - Secure Boot Security Feature Bypass Vulnerability
CVSS 7.9
CVE-2026-47656 HIGH
Microsoft Windows 10 Version 1607 - Windows Boot Manager Security Feature Bypass Vulnerability
CVSS 7.9
CVE-2026-45656 HIGH
Microsoft Windows 10 Version 1607 - UEFI Secure Boot Security Feature Bypass Vulnerability
CVSS 7.8
CVE-2026-45655 MEDIUM
Microsoft Windows 10 Version 1607 - Windows BitLocker Security Feature Bypass Vulnerability
CVSS 5.3
CVE-2026-45595 MEDIUM
Windows Mark of the Web Security Feature Bypass Vulnerability
CVSS 5.4
Details
Vulnerabilities 668