CWE-693
Protection Mechanism Failure
The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
668 vulnerabilities with CWE-693
CVE-2026-53853
HIGH
OpenClaw < 2026.5.12 - Argument Pattern Bypass in Exec Allowlist via Linux and macOS
CVSS 8.3
CVE-2026-53845
MEDIUM
OpenClaw < 2026.5.6 - Skill-Command Dispatch Hook Bypass via Before-Tool-Call Hook Skipping
CVSS 4.3
CVE-2026-12316
CRITICAL
Mitigation bypass in the DOM: Security component
CVSS 9.1
CVE-2026-12315
CRITICAL
Mitigation bypass in the DOM: Security component
CVSS 9.1
CVE-2026-12302
MEDIUM
Mitigation bypass in the DOM: Security component
CVSS 6.5
CVE-2026-12296
CRITICAL
Sandbox escape in the Security: Process Sandboxing component
CVSS 9.6
CVE-2026-12295
CRITICAL
Sandbox escape in the DOM: Navigation component
CVSS 9.6
CVE-2026-12294
CRITICAL
Sandbox escape in the DOM: Workers component
CVSS 9.6
CVE-2026-12214
HIGH
Qihoo 360 Total Security Nucleus Engine Monitoring Logic RpcStringBindingComposeW protection mechanism
CVSS 7.8
CVE-2026-47209
HIGH
vm2: Bridge Proxy set trap ignores receiver parameter, enabling host object property injection via prototype chain
CVSS 8.6
CVE-2026-47140
CRITICAL
vm2: NodeVM builtin denylist bypass via process and inspector/promises allows host code execution
CVSS 10.0
CVE-2026-47139
HIGH
vm2: NodeVM network builtin exclusions bypass via internal _http_client and _http_server
CVSS 8.6
CVE-2026-47135
HIGH
vm2: Sandbox escape via unblocked cross-realm Symbol.for keys + missing bridge write-trap symbol checks
CVSS 8.7
CVE-2026-12031
HIGH
Google Chrome < 149.0.7827.115 - Sandbox Escape via Crafted HTML Page
CVSS 8.3
CVE-2026-12027
CRITICAL
Google Chrome < 149.0.7827.115 - Sandbox Escape via Headless Inappropriate Implementation
CVSS 9.6
CVE-2026-48546
HIGH
KanaDojo < 0.1.18 Sandbox Escape RCE via messages.cjs
CVSS 7.3
CVE-2026-50564
CRITICAL
Fission Environment CRD podspec passthrough enables hostPID/hostNetwork/privileged pods, node escape
CVSS 9.9
CVE-2026-50545
CRITICAL
Fission Environment CRD PodSpec Injection Leading to Node Escape and Cluster Takeover
CVSS 9.9
CVE-2026-48575
HIGH
Microsoft Windows 10 Version 1607 - Secure Boot Security Feature Bypass Vulnerability
CVSS 7.9
CVE-2026-48570
HIGH
Microsoft Windows 10 Version 1607 - Secure Boot Security Feature Bypass Vulnerability
CVSS 7.9
CVE-2026-48568
HIGH
Microsoft Windows 10 Version 1607 - Secure Boot Security Feature Bypass Vulnerability
CVSS 7.9
CVE-2026-47656
HIGH
Microsoft Windows 10 Version 1607 - Windows Boot Manager Security Feature Bypass Vulnerability
CVSS 7.9
CVE-2026-45656
HIGH
Microsoft Windows 10 Version 1607 - UEFI Secure Boot Security Feature Bypass Vulnerability
CVSS 7.8
CVE-2026-45655
MEDIUM
Microsoft Windows 10 Version 1607 - Windows BitLocker Security Feature Bypass Vulnerability
CVSS 5.3
CVE-2026-45595
MEDIUM
Windows Mark of the Web Security Feature Bypass Vulnerability
CVSS 5.4
Details
Vulnerabilities
668