Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.3 CVE-2026-35617

OpenClaw < 2026.3.25 - Authorization Bypass via Group Policy Rebinding with Mutable Space displayName_CVE-2026-35617

OpenClaw before 2026.3.25 contains an authorization bypass vulnerability in Google Chat group policy enforcement that relies on mutable space displ...

OpenClaw OpenClaw CVE
LOW 2.1 CVE-2026-5778

Integer underflow leads to out-of-bounds access in sniffer ChaCha decrypt path._CVE-2026-5778

Integer underflow in wolfSSL packet sniffer

wolfSSL wolfSSL CVE
LOW 2.1 CVE-2026-5772

MatchDomainName 1-Byte Stack Buffer Over-Read in Hostname Validation_CVE-2026-5772

A 1-byte stack buffer over-read was identified in the MatchDomainName function (src/internal.c) during wildcard hostname validation when the LEFT_M...

wolfSSL wolfSSL CVE
LOW 2.3 CVE-2026-5448

1-2 Byte Buffer Overflow in wolfSSL_X509_notAfter/notBefore_CVE-2026-5448

X.509 date buffer overflow in wolfSSL_X509_notAfter / wolfSSL_X509_notBefore. A buffer overflow may occur when parsing date fields from a crafted X...

wolfSSL wolfSSL CVE
LOW 2.3 CVE-2026-5392

wolfSSL heap OOB read in PKCS7 SignedData streaming_CVE-2026-5392

Heap out-of-bounds read in PKCS7 parsing. A crafted PKCS7 message can trigger an OOB read on the heap. The missing bounds check is in the indefinit...

wolfSSL wolfSSL CVE
LOW 3.5 CVE-2026-33551

CVE-2026-33551_CVE-2026-33551

An issue was discovered in OpenStack Keystone 14 through 26 before 26.1.1, 27.0.0, 28.0.0, and 29.0.0. Restricted application credentials can creat...

OpenStack Keystone 14.0.0 CVE
LOW 2.3 CVE-2026-5188

Integer underflow in X.509 SAN parsing in wolfSSL_CVE-2026-5188

An integer underflow issue exists in wolfSSL when parsing the Subject Alternative Name (SAN) extension of X.509 certificates. A malformed certifica...

wolfSSL wolfSSL CVE
LOW 2.9 CVE-2026-40228

CVE-2026-40228_CVE-2026-40228

In systemd 259, systemd-journald can send ANSI escape sequences to the terminals of arbitrary users when a "logger -p emerg" command is executed, i...

systemd systemd 259 CVE
LOW 2.3 CVE-2026-35648

OpenClaw < 2026.3.22 - Policy Bypass via Unvalidated Queued Node Actions_CVE-2026-35648

OpenClaw before 2026.3.22 contains a policy bypass vulnerability where queued node actions are not revalidated against current command policy when ...

OpenClaw OpenClaw CVE
LOW 3.7 CVE-2026-40097

Step CA affected by an index out of bounds panic in TPM attestation EKU validation_CVE-2026-40097

Step CA is an online certificate authority for secure, automated certificate management for DevOps. From 0.24.0 to before 0.30.0-rc3, an attacker c...

smallstep certificates >= 0.24.0, < 0.30.0-rc3 CVE